Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-94826

RDP-based desktop solution does not work with non-local accounts

Linking RHIVOS CVEs to...Migration: Automation ...Sync from "Extern...XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • rhel-10.0
    • gnome-remote-desktop
    • None
    • No
    • Critical
    • rhel-display-window-mgmt
    • ssg_display
    • None
    • False
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • Unspecified
    • Unspecified
    • Unspecified
    • None

      What were you trying to do that didn't work?

      When attempting to connect to an RDP-based gnome-remote-desktop session with a non-local user (i.e.: AD- or SSSD-based accounts), the connection fails.

      What is the impact of this issue to you?

      Considerable; non-local users cannot log in remotely.

      Please provide the package NVR for which the bug is seen:

      47.3-1

      How reproducible is this bug?: 100%

      Steps to reproduce

      1. Enable gnome-remote-desktop session for a non-local user.
      2. Attempt to log in as that user.

      Expected results

      Login is successful.

      Actual results

      Login fails with these messages in the syslog:

      {{gnome-remote-desktop-daemon[1029]: [ntlm_fetch_ntlm_v2_hash]: Error: Could not find user in SAM database
      gnome-remote-desktop-daemon[1029]: [winpr_AcceptSecurityContext]: AcceptSecurityContext status SEC_E_NO_CREDENTIALS [0x8009030E]
      gnome-remote-desktop-daemon[1029]: [credssp_auth_authenticate]: AcceptSecurityContext failed with SEC_E_NO_CREDENTIALS [0x8009030E]
      gnome-remote-desktop-daemon[1029]: [transport_accept_nla]: client authentication failure
      gnome-remote-desktop-daemon[1029]: [rdp_server_accept_nego]: Protocol security negotiation failure}}

              jadahl@redhat.com Jonas Ådahl
              rhn-support-amike Andrew Mike
              Jonas Ådahl Jonas Ådahl
              Radek Duda Radek Duda
              Votes:
              3 Vote for this issue
              Watchers:
              14 Start watching this issue

                Created:
                Updated: