Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

AIX 4.3.3 password changing

Status
Not open for further replies.

THEaix

MIS
Jun 7, 2007
30
US
This server used to be in a 2 node HA cluster.
There was a sync password scsript that would sync the users and passwords between the 2 nodes.

I have disabl;ed all of that but everyday the root password doesn't work. I don't know if it's expired retries etc etc or what.

When you login it just returns that the password username is invalid.
luckilyu I can ssh to this node and run passwd and change the password but efvry morning I retry and it woun't work.

Any ideas????????

 
For starters, it won't be expiration or failed logins because neither of those apply to root.

A few questions:

How are you able to change the password via ssh? Are you using sudo, or do you ssh in as root using a keypair?
Where is the failure happening, at a console? Have you confirmed that you can login that way after you've changed it via ssh?
Are you the only one with root access to the node?


I'd check all scripts run by all crontabs, as well as (if you're using sudo) any entries in /etc/sudoers with NOPASSWD set.

- Rod


IBM Certified Advanced Technical Expert pSeries and AIX 5L
CompTIA Linux+
CompTIA Security+

A Simple Code for Posting on the Web
 
Thanks for replying.

ssh as a key pair.

yes after running passwd and changing it in the ssh connection you can login fine thru TN or ssh directly to the server.

2 other admins but pretty positive it's not one of them.

whether at the console or remote connection ssh or telnet it won't work.

I've been looking at cron but havn't seen anything, continuing to triple check.

I'll look at the files and chk on the sudo's.

Since you replied I'll ask ( could look it up)

I also have a opasswd under /etc as well as under /etc/seccurity allong with ogroup same dir's.

What is the opasswd and ogroup used for?


 
They are the previous ((o)ld) versions of the files with the same name less the "o".

These are especially useful when someone decides to delete the original, provided you can get in as root.

- Rod
 
THANKS TO YOU TWO THAT REPLIED!!!

I found the little culprit.

On our DR site ( that is clusterd ha) in a distfile that is being called by the sync_passwd script for that cluster had an entry for it prod sister server in it instead of it's other DR node .


 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top