Re: [Freeipa-users] FreeIPA, Ipsilon, Duo Security integration

2016-12-01 Thread Simo Sorce
On Thu, 2016-12-01 at 11:37 -0800, Mike Jacobacci wrote: > Hi, > > As of now, we have FreeIPA/FreeRadius with OTP and Ipsilon working > perfectly. Now, I am looking at possibly integrating Duo security instead > of FreeIPA's 2FA. I am concerned about how it will fit in with Ipsilon and >

[Freeipa-users] FreeIPA, Ipsilon, Duo Security integration

2016-12-01 Thread Mike Jacobacci
Hi, As of now, we have FreeIPA/FreeRadius with OTP and Ipsilon working perfectly. Now, I am looking at possibly integrating Duo security instead of FreeIPA's 2FA. I am concerned about how it will fit in with Ipsilon and FreeIPA... Has anyone else tried this before? If so, are there any

Re: [Freeipa-users] FreeIPA + Ipsilon

2014-08-08 Thread Simo Sorce
On Thu, 2014-08-07 at 17:49 +0200, Luca Tartarini wrote: Hi, thanks for the reply, with Cherrypy 3.2.2 it works. Unfortunately now when I try to login with 'admin' account ('admin' user created previously during the installation of ipa-server) I can't see the Administration tab. Basically

Re: [Freeipa-users] FreeIPA + Ipsilon

2014-08-07 Thread Luca Tartarini
Hi, thanks for the reply, with Cherrypy 3.2.2 it works. Unfortunately now when I try to login with 'admin' account ('admin' user created previously during the installation of ipa-server) I can't see the Administration tab. Basically this condition (in /usr/share/ipsilon/templates/index.html) is

Re: [Freeipa-users] FreeIPA + Ipsilon

2014-08-06 Thread Luca Tartarini
Hi, Thanks for the replies. I updated the line with: plugins_by_name = dict((p.name, p) for p in self._site[FACILITY]['enabled']) and it works (the installation is completed succesfully). But now when I try to connect to: https://myidp.example.com/idp or I try to configure ipsilon-client

Re: [Freeipa-users] FreeIPA + Ipsilon

2014-08-06 Thread Simo Sorce
On Wed, 2014-08-06 at 17:20 +0200, Luca Tartarini wrote: Hi, Thanks for the replies. I updated the line with: plugins_by_name = dict((p.name, p) for p in self._site[FACILITY]['enabled']) and it works (the installation is completed succesfully). But now when I try to connect to:

Re: [Freeipa-users] FreeIPA + Ipsilon

2014-08-05 Thread Luca Tartarini
Hi, thanks for the replies. I am finally managed to install lasso correctly (without lasso-python) but after the installation of ipsilon-server (ipsilon-server-install --ipa=yes --secure=no) when I try to connet via browser to: https://myidp.example.com/idp I had this error: [error] mod_wsgi

Re: [Freeipa-users] FreeIPA + Ipsilon

2014-08-05 Thread Simo Sorce
On Tue, 2014-08-05 at 17:47 +0200, Luca Tartarini wrote: Hi, thanks for the replies. I am finally managed to install lasso correctly (without lasso-python) but after the installation of ipsilon-server (ipsilon-server-install --ipa=yes --secure=no) when I try to connet via browser to:

Re: [Freeipa-users] FreeIPA + Ipsilon

2014-08-05 Thread Petr Viktorin
On 08/05/2014 07:48 PM, Simo Sorce wrote: On Tue, 2014-08-05 at 17:47 +0200, Luca Tartarini wrote: [...] with HTTP 500 Internal Server Error (GET /idp HTTP/1.1 500 619) The line is this one (in /usr/lib/python2.6/site-packages/ipsilon/admin/login.py): plugins_by_name = {p.name: p for p in

Re: [Freeipa-users] FreeIPA + Ipsilon

2014-07-31 Thread Luca Tartarini
Hi, Thanks for the reply, unfortunately I can not find the package on Scientific Linux, is there a workaround? Thanks. Luca Tartarini 2014-07-30 15:00 GMT+02:00 Simo Sorce sso...@redhat.com: On Tue, 2014-07-29 at 15:58 +0200, Martin Kosek wrote: On 07/29/2014 03:47 PM, Luca Tartarini

Re: [Freeipa-users] FreeIPA + Ipsilon

2014-07-31 Thread Martin Kosek
Without this package for your platform, you cannot move further. So you would either need to switch to some platform that has this package available (RHEL, CentOS, Fedora) or take the source bits and build it for your platform yourselves. Maybe you would get lucky with rebuilding the source RPM

Re: [Freeipa-users] FreeIPA + Ipsilon

2014-07-31 Thread Simo Sorce
On Thu, 2014-07-31 at 09:53 +0200, Luca Tartarini wrote: Hi, Thanks for the reply, unfortunately I can not find the package on Scientific Linux, is there a workaround? I saw from the lasso mailing list that you built the lasso package yourself, make sure you built the python bindings, they

Re: [Freeipa-users] FreeIPA + Ipsilon

2014-07-30 Thread Simo Sorce
On Tue, 2014-07-29 at 15:58 +0200, Martin Kosek wrote: On 07/29/2014 03:47 PM, Luca Tartarini wrote: Hi everyone, I am new in FreeIPA, I am trying to configure FreeIPA with Ipsilon. The configuration is the following: Service Provider (host with Scientific Linux 6) with ipsilon-client

[Freeipa-users] FreeIPA + Ipsilon

2014-07-29 Thread Luca Tartarini
Hi everyone, I am new in FreeIPA, I am trying to configure FreeIPA with Ipsilon. The configuration is the following: Service Provider (host with Scientific Linux 6) with ipsilon-client and Identity Provider (another host with Scientific Linux 6) with FreeIPA and ipsilon-server, is the

Re: [Freeipa-users] FreeIPA + Ipsilon

2014-07-29 Thread Martin Kosek
On 07/29/2014 03:47 PM, Luca Tartarini wrote: Hi everyone, I am new in FreeIPA, I am trying to configure FreeIPA with Ipsilon. The configuration is the following: Service Provider (host with Scientific Linux 6) with ipsilon-client and Identity Provider (another host with Scientific Linux 6)