Brian A. Seklecki writes:


All:

   Did this end up functional?

   I'm going to implement a 2FA/Two-factor-Authentication product that uses
   RADIUS to proxy LDAP passwords.

   Some systems (sshd(8) w/ PAM and Cisco VPN) support extensions in PAM to
   permit for two factor authentication via multi-packet RADIUS exchange,
   by prompting for a second challenge-response

   Others may not -- depending on the API -- and the RAIDUS server will
   accept the second factor auth token (In this case, a 6-12 digit PIN from
   a OTP Token/KeyFOB) appended or prepended to the users's password.

   I'm curious how authpam will function -- I'll be setting it up in a lab
   envrionment sometime during 2009.

It won't. courier-authlib takes a userid and a password, and tries to authenticate it via PAM. Anything other than plain userid/password authentication won't work.

Attachment: pgpT7LQCtznsd.pgp
Description: PGP signature

------------------------------------------------------------------------------
SF.Net email is Sponsored by MIX09, March 18-20, 2009 in Las Vegas, Nevada.
The future of the web can't happen without you.  Join us at MIX09 to help
pave the way to the Next Web now. Learn more and register at
http://ad.doubleclick.net/clk;208669438;13503038;i?http://2009.visitmix.com/
_______________________________________________
courier-users mailing list
[email protected]
Unsubscribe: https://lists.sourceforge.net/lists/listinfo/courier-users

Reply via email to