Loading...
Loading...
Changing auth-pam-validate-ip from 'on' to 'off' does not work if /run/pamcache contains token files Login attempts fail unexpectedly, sometimes logging "Cookie impersonation detected" in /var/log/httpd/httpd_errors. Transition from 'off' to 'on' works as expected
- Login disruptions for users - Security configuration changes fail to take effect
Occurs when older token files are still present in the /run/pamcache directory after changing the auth-pam-validate-ip setting from 'on' to 'off'
- set auth-pam-validate-ip to "off" - make sure that no active client sessions are sending or receiving data to/from httpd - delete all tokens from /run/pamcache
None
F5 Integration
Learn more about where this data comes from
BugZero Plan
Streamline upgrades with automated vendor bug scrubs
BugZero Prevent
Wish you caught this bug sooner? Get proactive today.