Today the customer reflects a problem, ssh not on their own server, into the computer room radhat Linux Local login (3 level) when the input root hit enter the following prompt:
Your account is locked. Maximum amount of failed attempts was reached.
Say, single-user mode
Pam_tally2-u Root (faillog-u root< see login failure information recorded in/var/log/faillog >) shows the number of log-in failures logged by the root user
Pam_tally2-u Root-r (faillog-u root-r< resets login failure information recorded in/var/log/faillog >) Resets the number of login errors to 0
Then restart (5-level mode) Enter the user name password, prompting Authontication failed.
Continue single-user mode
Authconfig--disableldap--update
By the way Vi/etc/pam.d/system-auth
#%pam-1.0
# This file is auto-generated.
# User changes'll be destroyed the next time Authconfig is run.
Auth requeired pam_tally2.so deny=5 lock_time=30 even_deny_root root_unlock_time=30
Auth Required pam_env.so
Auth sufficient pam_unix.so Nullok Try_first_pass
Auth requisite pam_succeed_if.so uid >= quiet
Auth Required pam_deny.so
Account Required Pam_unix.so
Account Sufficient pam_localuser.so
Account sufficient pam_succeed_if.so UID < quiet
Account Required Pam_permit.so
Password requisite pam_cracklib.so try_first_pass retry=3 type=
Password sufficient pam_unix.so sha512 shadow Nullok try_first_pass Use_au
Thtok
Password Required pam_deny.so
Session optional Pam_keyinit.so Revoke
Session Required Pam_limits.so
session [Success=1 Default=ignore] pam_succeed_if.so service in Crond quiet
Use_uid
Session Required Pam_unix.so
The culprit is the red font line, please add a #650 in front of the red font) this.width=650; "src=" Http://img.baidu.com/hi/jx2/j_0062.gif "alt=" J_0062.gif "/> All problems are solved, the system user can log in normally.
This article is from the "Struggle" blog, please be sure to keep this source http://qiangzuibang.blog.51cto.com/2140444/1430380