Loading...
Loading...
On an M-series Cumulus switch running a version earlier than 5.12.1, RADIUS, TACACS+, and Lightweight Directory Access Protocol (LDAP) may fail to authenticate, even though they are properly configured, after a factory reset has been performed.This occurs because the files in the/etc/pam.dpath are incorrect, causing issues with password strength checking.To determine whether a factory reset has been completed, check/var/log/factory-reset.log.Example:2025/06/17 11:51:26 factory-reset.service: Resetting system to factory configuration of type default
The following M-series switches running version earlier than 5.12.1 are affected by this issue:HPE M-series SN2410M SwitchHPE Storage Switch M-series SN2010MHPE Storage Switch M-series SN2100MHPE Storage Switch M-series SN3700MHPE Storage Switch M-series SN4600MHPE Storage Switch M-series SN4700M
This issue is resolved in Cumulus version 5.11.5 (or later) in the 5.11.x release branch, or by upgrading to Cumulus version 5.13 (or later).As a workaround, run the following command to correctly update the files in the Pluggable Authentication Modules (PAM) directory.cumulus@switch:~$ sudo /usr/sbin/pam-auth-update –force –package
Operating Systems Affected:Not Applicable
Click on a version to see all relevant bugs
Hewlett Packard Enterprise Integration
Learn more about where this data comes from
BugZero Plan
Streamline upgrades with automated vendor bug scrubs
BugZero Prevent
Wish you caught this bug sooner? Get proactive today.