The problem here is: Jul 6 18:58:39 helium PAM-warn[28455]: function=[pam_sm_acct_mgmt] service=[sshd] terminal=[ssh] user=[portfwd] ruser=[<unknown>] rhost=[161.80.249.101]
openssh-server ships /etc/pam.d/ssh, but this above line indicates it is looking for /etc/pam.d/sshd, and then fall back to /etc/pam.d/other. I presume the submitter has changed /etc/pam.d/other to reject user logins, while in the default case this change will simply cause things like pam_env, pam_motd, pam_limits and pam_mail to be not-processed. (I believe this change also caused 317088, but cannot be certain from the report itself.) -- Paul "TBBle" Hampson, [EMAIL PROTECTED] 7th year CompSci/Asian Studies student, ANU Shorter .sig for a more eco-friendly paperless office.
pgp0ZEqhSnLZD.pgp
Description: PGP signature