Welcome to the Authentication Hub Project
AuthHub? is a project to enable many authentication methods in the Kerberos KDC. This is enabled by the OTP Preauthentication RFC draft, which targets doing One Time Passwords, but enables many other authentication mechanisms.
For the Impatient
Check out our getting started guide.
|Latest Release||Repository||Mailing List|
|0.1.2||git ssh http browse||authhub-devel|
Currently we support the following OTP tokens:
|OATH Token (iOS)||Y||Y||N/A|
|Google Authenticator (iOS, Android, Blackberry)||Y||Y||N/A|
Unfortunately, some features of the RFC draft are currently missing:
- 2-pass variant (client side only)
- must-encrypt-nonce mode (i.e. not sending OTP over the wire)
- support for connected tokens
- PIN change
- hash support
We plan to add support for these in the future.
Plugging in external authentication methods into Kerberos KDC