Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
David_Herselman
Advisor

RADIUS - Update username in accept?

We have integrated YubiKey OTP (result when pushing the button or holding the key to a mobile device's NFC reader) with freeRADIUS.

We had a requirement to support PAP, NTLMv2 and MS-CHAPv2, so we couldn't combine the password with the 44 char Yubico OTP. Doing this, aka RSA token style, would invalidate mutual hashing of the password.

 

We have ssh access to Gaia working, by using the OTP as the username, but Management access is dependant on having created a username object.

 

I presume this would be a feature request?

Is there currently a way one could login to Smart Console using the following OTP as the username and have it associate the session with the username returned in an attribute, as part of the success reply?

Sample Yubico OTP: cccccctcikejgjvkcdbdkjutfcrjlkurjikecdrdvvgl

 

https://developers.yubico.com/OTP/OTPs_Explained.html

0 Kudos
1 Reply
PhoneBoy
Admin
Admin

Pretty sure you are correct, this is an RFE.

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82
    CheckMates Events