login about faq

How to enable extended user attributes on Solaris?

asked Dec 20 '10 at 12:31

SSH%20KB's gravatar image


Solaris users can have extended user attributes such as roles or a default project id defined in the /etc/user_attr file. In Tectia, these extended attributes are supported through PAM. This means that in order for these extended attributes to be used, the users who log in need to use PAM authentication, or Tectia server needs to be configured to use PAM account and session management with all authentication methods.

PAM account management and session management can be enabled for all authentication methods in Tectia server configuration by using the pam-calls-with-commands option. By default, the service name in PAM is ssh-server-g3 but this can be configured using the "service-name" attribute.

The PAM configuration needs to have the modules needed by the extended attributes. For example for projects, the pam_projects.so.1 on Solaris 8 and pam_unix_cred.so.1 on Solaris 10 are needed.


answered Dec 20 '10 at 12:31

SSH%20KB's gravatar image


Your answer
toggle preview

Follow this question

By Email:

Once you sign in you will be able to subscribe for any updates here



Answers and Comments

Markdown Basics

  • *italic* or __italic__
  • **bold** or __bold__
  • link:[text](http://url.com/ "title")
  • image?![alt text](/path/img.jpg "title")
  • numbered list: 1. Foo 2. Bar
  • to add a line break simply add two spaces to where you would like the new line to be.
  • basic HTML tags are also supported



Asked: Dec 20 '10 at 12:31

Seen: 7,428 times

Last updated: Mar 14 '11 at 19:22

All user contributed content licensed under the cc-by-sa license.
Powered by OSQA.