6.4 Domain Users Are Unable to Log In Even After Authenticating All the Methods In a Chain

Issue: When an Active Directory user logs in to the SUSE Linux PAM Client and passes all the authentication methods in the chain, authentication fails and an error message Sorry that didn't work is displayed.

Workaround:

  1. After joining the SLES 12 Service Pack 3 to the windows domain, navigate to Yast and search for the Windows Domain Membership.

  2. Select the following in the Windows Domain Membership window:

    • Use SMB Information for Linux Authentication

    • Create Home Directory on Login

    • Offline Authentication

  3. Click NTP configuration in the lower part of the window.

  4. Select Now and on Boot in the Advanced NTP Configuration > General Settings tab.

  5. Click Add.

  6. Select the Type as Server from the New Synchronization window and click Next.

  7. Specify the host or IP address of the NTP server in Address.

  8. Click Test to test the server settings.

  9. Click OK to apply the Windows Domain Membership settings.

    A list of packages are displayed.

  10. Ensure to install all the packages that are prompted in the list.

  11. Reboot your system.