pam_krb5-3.10 with debug Aug 4 13:26:47 testserver sshd[25623]: Authorized to testuser, krb5 principal testuser@TEST.COM (krb5_kuserok) Aug 4 13:26:47 testserver sshd[25623]: (pam_krb5): none: pam_sm_acct_mgmt: entry (0x0) Aug 4 13:26:47 testserver sshd[25623]: (pam_krb5): none: skipping non-Kerberos login Aug 4 13:26:47 testserver sshd[25623]: (pam_krb5): none: pam_sm_acct_mgmt: exit (success) Aug 4 13:26:47 testserver sshd[25623]: Accepted gssapi-with-mic for testuser from 132.229.x.x port 52148 ssh2 Aug 4 13:26:47 testserver sshd[25623]: (pam_krb5): none: pam_sm_setcred: entry (0x2) Aug 4 13:26:47 testserver sshd[25623]: (pam_krb5): none: no context found, creating one Aug 4 13:26:47 testserver sshd[25623]: (pam_krb5): testuser: unable to get PAM_KRB5CCNAME, assuming non-Kerberos login Aug 4 13:26:47 testserver sshd[25623]: (pam_krb5): none: pam_sm_setcred: exit (success) Aug 4 13:26:47 testserver sshd[25623]: (pam_krb5): none: pam_sm_setcred: entry (0x2) Aug 4 13:26:47 testserver sshd[25623]: (pam_krb5): none: no context found, creating one Aug 4 13:26:47 testserver sshd[25623]: (pam_krb5): testuser: unable to get PAM_KRB5CCNAME, assuming non-Kerberos login Aug 4 13:26:47 testserver sshd[25623]: (pam_krb5): none: pam_sm_setcred: exit (success) Aug 4 13:26:47 testserver sshd[25623]: pam_unix(sshd:session): session opened for user testuser by (uid=0) Aug 4 13:26:47 testserver sshd[25625]: (pam_krb5): none: pam_sm_setcred: entry (0x2) Aug 4 13:26:47 testserver sshd[25625]: (pam_krb5): none: no context found, creating one Aug 4 13:26:47 testserver sshd[25625]: (pam_krb5): testuser: unable to get PAM_KRB5CCNAME, assuming non-Kerberos login Aug 4 13:26:47 testserver sshd[25625]: (pam_krb5): none: pam_sm_setcred: exit (success) `ssh -v testserver` OpenSSH_5.2p1, OpenSSL 0.9.8k 25 Mar 2009 debug1: Reading configuration data /home/staff/testuser/.ssh/config debug1: Reading configuration data /etc/ssh/ssh_config debug1: Applying options for * debug1: Connecting to testserver [132.229.x.x] port 22. debug1: Connection established. debug1: identity file /home/staff/testuser/.ssh/id_rsa type 1 debug1: identity file /home/staff/testuser/.ssh/id_dsa type 2 debug1: Remote protocol version 2.0, remote software version OpenSSH_5.1 debug1: match: OpenSSH_5.1 pat OpenSSH* debug1: Enabling compatibility mode for protocol 2.0 debug1: Local version string SSH-2.0-OpenSSH_5.2 debug1: SSH2_MSG_KEXINIT sent debug1: SSH2_MSG_KEXINIT received debug1: kex: server->client aes128-ctr hmac-md5 none debug1: kex: client->server aes128-ctr hmac-md5 none debug1: SSH2_MSG_KEX_DH_GEX_REQUEST(1024<1024<8192) sent debug1: expecting SSH2_MSG_KEX_DH_GEX_GROUP debug1: SSH2_MSG_KEX_DH_GEX_INIT sent debug1: expecting SSH2_MSG_KEX_DH_GEX_REPLY debug1: Host 'testserver' is known and matches the RSA host key. debug1: Found key in /home/staff/testuser/.ssh/known_hosts:6 debug1: ssh_rsa_verify: signature correct debug1: SSH2_MSG_NEWKEYS sent debug1: expecting SSH2_MSG_NEWKEYS debug1: SSH2_MSG_NEWKEYS received debug1: SSH2_MSG_SERVICE_REQUEST sent debug1: SSH2_MSG_SERVICE_ACCEPT received debug1: Authentications that can continue: publickey,gssapi-with-mic,password,keyboard-interactive debug1: Next authentication method: gssapi-with-mic debug1: Delegating credentials debug1: Delegating credentials debug1: Authentication succeeded (gssapi-with-mic). debug1: channel 0: new [client-session] debug1: Requesting no-more-sessions@openssh.com debug1: Entering interactive session. testuser@testserver ~ $