Install Guide

/etc/pam.d/sfcb
/etc/pam.d/system-auth
2. /etc/pam.d/openwsman /etc/pam.d/sfcb 的内容替换为
auth required pam_stack.so service=system-auth auth required /lib/security/pam_nologin.so
account required pam_stack.so service=system-auth
3. /etc/pam.d/system-auth 的内容替换为
%PAM-1.0 This file is auto-generated. User changes will be destroyed the next time
authconfig is run. auth required /lib/security/$ISA/pam_env.so auth sufficient /lib/
security/$ISA/pam_unix.so likeauth nullok auth sufficient /lib/security/$ISA/pam_krb5.so
use_first_pass auth sufficient /lib/security/$ISA/pam_winbind.so use_first_pass auth
required /lib/security/$ISA/pam_deny.so account required /lib/security/$ISA/pam_unix.so
broken_shadow account sufficient /lib/security/$ISA/pam_succeed_if.so uid 100 quiet
account [default=bad success=ok user_unknown= ignore] /lib/security/$ISA/pam_krb5.so
account [default=bad success=ok user_unknown= ignore] /lib/security/$ISA/pam_winbind.so
account required /lib/security/$ISA/pam_permit.so password requisite /lib/security/$ISA/
pam_cracklib.so retry=3 password sufficient /lib/security/$ISA/pam_unix.so nullok
use_authtok md5 shadow password sufficient /lib/security/$ISA/pam_krb5.so use_authtok
password sufficient /lib/security/$ISA/pam_winbind.so use_authtok password required /lib/
security/$ISA/pam_deny.so session required /lib/security/$ISA/pam_limits.so session
required /lib/security/$ISA/pam_unix.so session optional /lib/security/$ISA/pam_krb5.so
Libssl 问题的解决方法
如果系统中已经存在 openwsman 所需的必要程序库则可以使用 autoconf_cim_component.sh 脚本尝试解决 libssl.so 问题。但
如果该库不存在则脚本将报告相同的结果。检查系统上是否已安装最新版本的 libssl 程序库然后创建 libssl.so 的软链接。
例如 32 位安装上如果 /usr/lib 中已经包含 libssl.so.0.9.8a libssl.so.0.9.8b则创建最新的
libssl.so.0.9.8b 的软链接
ln -sf /usr/lib/libssl.so.0.9.8b /usr/lib/libssl.so
ldconfig
64 位安装上如果 /usr/lib 中已经包含 libssl.so.0.9.8a libssl.so.0.9.8b则创建最新的 libssl.so.0.9.8b
的软链接
ln -sf /usr/lib64/libssl.so.0.9.8b /usr/lib64/libssl.so
ldconfig
用于 SUSE Linux Enterprise Server 操作系统
openwsman sfcb Winbind 配置
32 OMI 安装上请按照下述说明配置 openwsman sfcb。对于 64 位安装请将 .lib 替换为 .lib64
1. 备份以下文件
/etc/pam.d/openwsman
/etc/pam.d/sfcb
/etc/pam.d/system-auth
/etc/pam.d/common-account
2. /etc/pam.d/openwsman/ /etc/pam.d/sfcb 的内容替换为
%PAM-1.0 auth include common-auth auth required /lib/security/pam_nologin.so account
include common-account
3. /etc/pam.d/common-auth 的内容替换为
auth required pam_env.so auth sufficient pam_unix2.so debug auth sufficient pam_winbind.so
use_first_pass debug
预安装设置
13