EncFS Automount at Login with pam_encfs

I was looking at wiki and the google page for encfs but I'm still confused about the conifguration.
My /etc/pam.d/system-auth looks like this:
#%PAM-1.0
auth sufficient pam_encfs.so
auth required pam_unix.so try_first_pass nullok
auth optional pam_permit.so
auth required pam_env.so
account required pam_unix.so
account optional pam_permit.so
account required pam_time.so
password required pam_unix.so try_first_pass nullok sha512 shadow
password optional pam_permit.so
session required pam_limits.so
session required pam_unix.so
session optional pam_permit.so
and my pam_encfs.conf looks like this:
user /home/user/Google\ Drive/Personal /home/user/Personal - - allow_other
the encfs volume was setup with the "p" option. Login seems to work just fine but the encrypted volume is not mounted. I image my pam_encfs.conf is not setup correctly. Any idea what I'm doing wrong?

did you setup a proxyagent for accessing the
userPassword attribute, this is taken care of during
idsconfig? if you did unless you bind as that user
you will not be able to login as that user. the
"ldapclient manual" you've supplied doesn't show any
"-a proxyDn=" or "-a proxyPassword=" values. try
setting those if you haven't.I did a reconfigure with idsconfig now and added your mentioned options to the ldapclient-command. Also changed serviceAuthenticationMethod to pam_ldap:simple. The config is now:
NS_LDAP_FILE_VERSION= 2.0
NS_LDAP_BINDDN= cn=proxyagent,ou=profile,dc=$DOMAINS
NS_LDAP_BINDPASSWD= $PASSWORD
NS_LDAP_SERVERS= $SERVERIP
NS_LDAP_SEARCH_BASEDN= dc=$DOMAINS
NS_LDAP_CACHETTL= 0
NS_LDAP_SERVICE_AUTH_METHOD= pam_ldap:simple
when you do your ldapsearch if you can't see
userPassword then you must bind as a proxyagent.
try "ldapsearch -h host -D
cn=proxyagent,ou=profile,dc=xyz,dc=com -w proxy_pass
-b ou=people,dc=xyz,dc=com uid=ldap_user"This works fine, so does ldaplist. But the authlog still produces errors:
pam_authenticate(8a158, 0): error Authentication failed
PAM[20279]: pam_set_item(8a158:authtok)
sshd[20279]: [ID 800047 auth.info] Keyboard-interactive (PAM) userauth failed[9] while authenticating: Authentication failed
Here the output of the access log while searching with ldapsearch:
SRCH base="ou=people,dc=$DOMAINS" scope=1 filter="(&(objectClass=posixAccount)(uid=$USERNAME))" attrs=ALL
RESULT err=0 tag=101 nentries=1 etime=0
But when trying to authorize it gives me this:
BIND dn="uid=$USERNAME,ou=People, dc=$DOMAINS" method=128 version=3
RESULT err=0 tag=97 nentries=0 etime=0 dn="uid=$USERNAME,ou=people,dc=$DOMAINS"

Similar Messages

  • How do I get automounting share points with to appear on user's computers?

    I recently purchased Sever 10.6, and upgraded to 10.6.8.  I'm running it on a 2006 MacBook Pro with 4GB (only 3GB are addressed on this model).  I really only need it for one thing: to serve 4 external drives to my home network.  But I can't do this: I want to set up automounting share points with custom paths so that on login the disks appear on the user's desktop and/or in the sidebar.  Clients range from 10.6.8 to 10.8.x to 10.9.x.
    I've tried setting the sharepoints.  I don't know what to put in for a custom path; trial and error has gotten me nothing.  I don't want home directories, libraries or application folders - I just want those disks shared to computers on my network.
    The little manual that comes with it is not helpful.   If there's a written document somewhere that is specific about this, I'd be happy to just read it myself.
    Thanks!
    Sean

    Hi Sean Hayes1,
    Volumes, including server volumes, that mount at startup are controlled on the client computer using System Preferences > Users & Groups > Login Items. The preference pane says this is for applications you want to launch at startup, but it also works for network mounts. See this article -
    OS X Mavericks: Login Items pane of Users & Groups preferences
    http://support.apple.com/kb/PH14413
    To add a new volume -
    To have an item open automatically at login, click Add (+), then select the item.
    Thanks for using Apple Support Communities.
    Best,
    Brett L

  • When i login with microsoft account cannot access with administrative share c$

    i have a problem when i login to windows with microsoft account cannot access any network computer with administrative sharing c$,d$ with windows 8.1 
    but when i login with local account can access
    and some people tell  me create key in regedit t fix it 
    after enter user name and password show this error 
    and i apply your instruction  and not fix until now
    note:
     my Machine windows 8.1 if another machine in network windows 7 can access a hidden share if machine in network windows 8.1 show this message in image 2 
    but if i login with local user can i access all machine hidden share network windows 7 and 8.1

    yes this computer i want to access  name poland2-work and have two users 
    first :administrator
    second : poland 2

  • Trying to login to software program known as hamspher (vip simulated ham radio,  it downloaded the program but it will not allow me to login with call sign and pin.  it has to be opened with what they call a jar file.  how do i do this?

    trying to login to software program known as hamspher (vip simulated ham radio,  it downloaded the program but it will not allow me to login with call sign and pin.  it has to be opened with what they call a jar file.  how do i do this?

    This is compatible with Mac? Especially Snow Leopard (if that is what you'e running)?
    Have you considered posting your question in their forums?
    Here is some information re. the jar file:
    http://ostermiller.org/opening_jar_files.html

  • Cannot login with AD credentials on iMac

    Greetings:
    I have a brand new 27" Intel iMac that had been allowing AD logins just find until today. Now, no matter what I do, unbinding, rebooting, manually joining domain (dsconfigad), etc I cannot login using my AD credentials. This had been working flawlessly until today. I can bind to AD no problem. When I go to login with my known good account, I just get the window shake. Logging in with a local account, I see error messages in the console of:
    DNS Update Failed & Enter Machine Password
    The machine account is already staged in our OU. I am not clear what the DNS error is alluding to.
    reading through these postings: http://www.macwindows.com/snowleopardAD.html
    I tried disabling creating mobile accounts at login. However that did not fix the issue.
    I believe our campus is running Win2K8 AD servers. Our campus DNS appliance is a separate box, but should know how to delegate to AD (?). The other 10.6.3 machines we have, are authenticating against AD fine.
    Any ideas?

    Marcus is correct - the ZAM administration accounts (ZAM 7.x) are stored (encrypted) within the ZAM database.
    Within ZAM 7.x there is no way to integrate this with AD (either by LDAP referral or some kind of identity / password sync) and AFAIK no plans to add this.
    I believe in the ZCM version of asset (and I hope the standalone version of ZAM10 still in dev) you set up the AD account(s) that is/are allowed Admin etc. access within ZAM, then LDAP referrals are used to authenticate via AD. I don;t know this for sure, though.

  • Unable to login with Jabber Windows

    Hi ,
    Am unable to login the Jabber Windows Client. Getting the error as "Unable to Communicate With the Server".
    Able to login with CUPS & CUCM end user page. CUCM Integrated with LDAP.
    While going through the UP Profile logs seen that "Failed to SOAP login".
    Tried with restart of CUCM & CUPS several times but no go.
    CUCM Version - 8.6.2
    CUPS Version - 8.6.1
    Tried with CUPC client result also same.
    Thanks in Advance

    If credentials work on CCMuser CUPSuser I would suspect either some kind of communication problem between the clients and the servers and/or misconfiguration (user/device/line association, device owner, roles, CTI/CCMCIP profiles, etc) on CUCM/CUPS.
    Specially because you mention the same happens with CUPC.
    HTH
    java
    if this helps, please rate
    www.cisco.com/go/pdihelpdesk

  • While send/receive email, I have received an error message "Sending of password d"? However with same login details, I am able to login with other application.

    While send/receive email, I have received an error message "Sending of password d"?
    However with same login details, I am able to login with other application.
    I have changed password still the issue remains as it is.

    https://support.mozilla.org/en-US/kb/cannot-send-messages

  • Unable to use free version regardless of browser on any machine. I login with adobe id but then the loading screen just hangs.

    Unable to use free version regardless of browser on any machine. I login with adobe id but then the loading screen just hangs. can't get any further - Tried all suggestions like clearing browser caches but no change.
    Got a couple of projects i wanted to try this on and if the software works I will probably take a subscription but considering this isn't working at all will look elsewhere.
    Also - adobe live chat support is useless.

    Hi,
    please share the Adobe ID that you are using with DL-AdobeStory-support<at>adobe<dot>com and we will investigate the issue.
    Thanks
    Aurobinda

  • Apple tv 2 problem: I can not login with my ID account!!!!!

    apple tv does not login with my ID! Do you have a solution? Since a few weeks I can not login in with my password...
    I tried everything:
    - re-starting apple tv.
    - login on macbook with my apple ID with new password

    Signal Strengh on WiFi was great (its a new Apple Time Capsule and has to be reset often).  Checked the internet connectivity on other machines too (incase that was inop).   I checked the network first as that is typically a impediment to all other things working prior to my previous comment.  I logged in to iTunes and MobleMe to see that my password was correct and working.  hmmm.
    I reset the Apple TV next and again changed my iTunes password on my laptop, then ran a network test (which needs a itunes password to work).  Network check was successful and I am logged back in.
    Now it says...."Netflix is currently unavailable. Try again later".
    geez.

  • Hello,when i login with the account of my wife it does not unable her music files.could you help me please?

    I have an imac osx 10.9.5 and 3,4GHz intel core i7
    When i login with the account of my wife in itunes, it does not show me the music files from her library,but only the music files from mine.
    What do i have to do?

    i mean log into iTunes Store,but i have solve this issue by myself.
    Thank you for your support.

  • HT204268; I have purchases on an aol login pre 2008 and all recent stuff under an apple id. I currently see and use everything when i login with the apple id. After March 31st will my apple id account still show and contain all?

    HT204268; I have purchases on an aol login pre 2008 and all recent stuff under an apple id. I currently see and use everything when i login with the apple id. After March 31st will my apple id account still show and contain all?
    I understand the instructions to create a new account id (apple id) from the old aol account. However, does this mean my purchases will be split into 2 accounts; or does the fact that I currently see everything under my apple id (regardless of the purchased by username) mean this will all still appear in my current account as it does now?

    You see them where when you login your non-AOL account ?
    If you currently have two accounts (the AOL username account and an email address account) then you will continue to have two accounts, and nothing should change when you update the AOL account to be an email address (apart from how you access that account).
    You will just be renaming the account to have an email address for accessing it, not creating a new account.

  • Why can't I login with my Apple ID when I try to setup Cloud on my MacBook Pro?

    Why can't I login with my Apple ID when I try to setup Cloud on my MacBook Pro?
    thanks,
    Simon

    First question that I am not clear on your answer about: Is the Apple ID itself a valid email address, and the same one that you have as your Primary email address on your account? If the actual Apple ID is not an email address, then that is why you are not able to sign on to iCloud or to verify it....it must be an email address.
    If it is an email address then:
    Update your OS to the latest version - 10.8.5
    Once you have updated, reboot the Mac and then go to Preferences>iCloud and try to sign on with your Apple ID again.
    Check Manage your Apple ID to make sure that your Apple ID/Primary email address is verified.
    If the problem persists, contact iCloud Support to see if they can provide you with an explanation of the meaning of the message. If the Apple ID has already been verified, then I'm not sure why you would be getting this messge:
    https://getsupport.apple.com/Issues.action
    Cheers and best of luck!
    GB

  • I AM A CREATIVE CLOUD MEMBER FOR SOMETIME BUT NOW WHEN I LOGIN WITH THE CORRECT PASSWORD I STILL GET SIGNED OUT MESSAGE AND THEN WHEN TRIED THE SOLUTION GIVEN BY HELP THAT IS TO DELETE OPM.DB FILE OR SECOND SOLUTION INSTALL A FRESH CREATIVE CLOUD FOR DESK

    I AM A CREATIVE CLOUD MEMBER FOR SOMETIME BUT NOW WHEN I LOGIN WITH THE CORRECT PASSWORD I STILL GET SIGNED OUT MESSAGE AND THEN WHEN TRIED THE SOLUTION GIVEN BY HELP THAT IS TO DELETE OPM.DB FILE OR SECOND SOLUTION INSTALL A FRESH CREATIVE CLOUD FOR DESKTOP APP OR EVEN SOLUTION OF RUN OF IMSLIBREPLACER  IM STIILL NOT ABLE TO LOGIN TO MY CREATIVE CLOUD FOR DEKTOP APP . PLEASE HELP ME AS I NEED TO GET IN AND EXPLORE MORE OF MY DOWNLOADED S/W
    I HAVE TRIED ALL POSSIBLE SOLUTION BUT AM AMAZED HOW THIS IS HAPPENING TO ME.
    PLEASE PLEASE HELP ME .Creative Cloud Connection

    Hi Alfred,
    I would like to know the exact error message when you sign in, in the meanwhile please try the following steps assuming its Windows, let me know if its a MAC:
    1) Go to Start button>> Control panel>> Uninstall a program.
    2) Check if you see Browser safeguard there, if yes then uninstall it.
    3) Open Internet explorer>> Tools>> Internet options>> Connections>> Lan Settings>> and it should be like this.
    -Ankit

  • I had renamed my user login name and assumed that there will be no change in the settings and files. When I login with the new profile name everything is gone. How can I get back all my files and settings?

    I had renamed my user login name and assumed that there will be no change in the settings and files. When I login with the new profile name everything is gone. How can I get back all my files and settings? Please help. Thanks.

    You should have asked this before you tried: Changing username or short name- User Account and Short Name- OS X- How to change user account name or home directory name.

  • I bought an iPhone5 in the US Apple Store using "guest checkout".  Now I must CHANGE Ships TO adress, because I forgot apartment number in adress.  if I login with my Apple ID, it says that I don't have permission to open that Order.   Any ideias anyone?

    I bought an iPhone5 in the US Apple Store using "guest checkout".
    Now I must CHANGE Ships TO adress, because I forgot apartment number in adress.
    if I login with my Apple ID, it says that I don't have permission to open that Order.
    Any ideias anyone?
    Tnx

    At official Apple page's I found this:
    With our Guest Checkout feature, you can check out on the Apple Online Store without an Apple ID or password. Simply add the items you would like to purchase to your shopping basket, enter your shipping and payment information, and click the "Place Order Now" button.
    You will be able to visit online Order Status to check your order status and track shipments.
    To cancel items, add items, or make changes to your order, please call 1800 88 20 45.
    What number I must dial?
    1-800-My-Apple or 1800 88 20 45
    Thx.

Maybe you are looking for