Search found 50 matches

by dkoleary
2014/06/24 14:27:17
Forum: CentOS 6 - General Support
Topic: Disabled mouse keeps re-enabling?
Replies: 1
Views: 1138

Disabled mouse keeps re-enabling?

Hey; I posted a question about a clear/transparent screen saver and got a response from Super Jamie re disabling the keyboard and mouse. Initially, that seemed to work very well; however, I'm finding that the mouse keeps getting re-enabled. Keyboard stays locked. Using the advice from http://unix.st...
by dkoleary
2014/06/24 13:22:33
Forum: CentOS 6 - General Support
Topic: clear/transparent screen locker for gnome?
Replies: 3
Views: 1933

Re: clear/transparent screen locker for gnome?

Hey;

Finally had a chance to try that. Works *perfectly*!

Thanks for the tip.

Doug
by dkoleary
2014/06/20 12:12:13
Forum: CentOS 6 - General Support
Topic: clear/transparent screen locker for gnome?
Replies: 3
Views: 1933

Re: clear/transparent screen locker for gnome?

Hey;

That's an interesting idea. Thanks. I'll give it a shot.

Doug
by dkoleary
2014/06/18 16:26:39
Forum: CentOS 6 - General Support
Topic: clear/transparent screen locker for gnome?
Replies: 3
Views: 1933

clear/transparent screen locker for gnome?

Hey; Is anyone aware of a clear or transparent screen locker for gnome? I have a fairly large screen on which I'm tailing numerous logs that I'd like to leave running w/o having to worry about people mucking about w/the keyboard or mouse. Short version: I'd like the keyboard and mouse locked but sti...
by dkoleary
2014/05/20 16:32:21
Forum: CentOS 6 - Security Support
Topic: PAM tracing and troubleshooting
Replies: 1
Views: 8551

Re: PAM tracing and troubleshooting

Hey; For what it's worth to posterity, I figured it out, finally. To do that, I ran strace on the sshd: :: # strace -f -o/tmp/sshd_trace /usr/sbin/sshd -D I was able to follow the pam auth, account, password, and session sections as they were called. I noticed that neither of the account related pam...
by dkoleary
2014/05/18 17:57:02
Forum: CentOS 6 - Security Support
Topic: PAM tracing and troubleshooting
Replies: 1
Views: 8551

PAM tracing and troubleshooting

Hey; I've been at several places that used the pam_succeed_if.so module to limit access to systems by the group. I'm trying to replicate that on a newly installed centos6.5 KVM client w/o success. So far, my efforts to trace what PAM is doing have also proven in vain. My understanding of it, is that...
by dkoleary
2014/05/12 17:30:14
Forum: CentOS 6 - Security Support
Topic: How to combine user_home and httpd_sys_content with SElinux
Replies: 1
Views: 1219

Re: How to combine user_home and httpd_sys_content with SEli

Hey; And, of course, there's another boolean. Here's my suggestion: # restorecon /home # to restore all the contexts to their original. # setsebool -P httpd_enable_homedirs 1 # mount -o remount,acl /home # if not already acl enabled. # setfacl -m u:apache:r-x /home/${user} # for whichever users will...
by dkoleary
2014/05/11 22:01:54
Forum: CentOS 6 - Security Support
Topic: centos6, sssd & ldap w/posixgroups vs groupofnames
Replies: 0
Views: 1555

centos6, sssd & ldap w/posixgroups vs groupofnames

Hey; While researching methods of limiting system access to ldap users, I ran face first into the ldap conflict: posixgroup vs groupofnames. As I'm working on linux, I need posixgroup to provide centralized group information:: # getent group dba dba:*:628: # getent group infra infra:*:635:d,dd,ddd,d...
by dkoleary
2014/05/11 21:17:12
Forum: CentOS 6 - Security Support
Topic: centos 6.5/sssd and ldap_access_filter
Replies: 2
Views: 8030

Re: centos 6.5/sssd and ldap_access_filter

Hey; I found out what the problem is; not sure how to solve it yet, though. The core issue is that I didn't have the memberof overlay defined in my directory. Without that, there is not memberof functionality. Now, I have to figure out the posixgroup/groupofnames structural conflict... that'll be a ...
by dkoleary
2014/05/10 22:22:57
Forum: CentOS 6 - Security Support
Topic: centos 6.5/sssd and ldap_access_filter
Replies: 2
Views: 8030

centos 6.5/sssd and ldap_access_filter

Hey; I'm having some difficulty getting the ldap_access_filter working in sssd under centos6.5. I have a kvm client that is able to resolve all required info from the ldap server: # h client4.olearycomputers.com # getent passwd d d:*:856:639:test user: d:/home/d:/bin/bash # getent group infra infra:...