Learn more about these different git repos.
Other Git URLs
I have configured FreeIPA with two-factor authentication and set up SSSD to try FAST. SSSD runs on IPA master itself:
krb5_use_fast = try krb5_fast_principal = host/master.ipa.test
When trying to login through SSH to the master.ipa.test, I've entered OTP key and in SSSD logs I can see that SSSD krb5 child did negotiate FAST, obtained the ticket for the user and finally stored it in the keyring ccache. However, SSSD's domain child did receive a response back that it didn't understand, therefore, full logon failed.
attachment krb5_child.log
attachment sssd_ipa.test.log
Patch sent for review: https://lists.fedorahosted.org/pipermail/sssd-devel/2013-December/017896.html
patch: 0 => 1
Fields changed
milestone: NEEDS_TRIAGE => SSSD 1.11.4
Ticket has been cloned to Bugzilla: https://bugzilla.redhat.com/show_bug.cgi?id=1051016
rhbz: => [https://bugzilla.redhat.com/show_bug.cgi?id=1051016 1051016]
resolution: => fixed status: new => closed
changelog: => Helps enable the use of OTP with an IPA server.
Metadata Update from @abbra: - Issue set to the milestone: SSSD 1.11.4
SSSD is moving from Pagure to Github. This means that new issues and pull requests will be accepted only in SSSD's github repository.
This issue has been cloned to Github and is available here: - https://github.com/SSSD/sssd/issues/3228
If you want to receive further updates on the issue, please navigate to the github issue and click on subscribe button.
subscribe
Thank you for understanding. We apologize for all inconvenience.
Login to comment on this ticket.