[Freeipa-users] Re: Error when trying to login on a CentOS 6 and OTP Token is enabled but not enforced in an account

2019-07-08 Thread Raul Gomez via FreeIPA-users
Thank you very much Robbie for your answer! I was almost convinced of this, but I wasn't sure if the 2FA could be excluded from being active in CentOS 6 servers. Looking to the bright side of this, now I have a better argument to convince my manager to give priority to upgrade all our CentOS 6

[Freeipa-users] Re: Error when trying to login on a CentOS 6 and OTP Token is enabled but not enforced in an account

2019-07-08 Thread Robbie Harwood via FreeIPA-users
Raul Gomez via FreeIPA-users writes: > Hello list! > > I'm new to FreeIPA, so probably this is something that has an easy fix but I > can't find a way around it. > > I have an environment where there are several CentOS 6 and CentOS 7 machines > and I'm trying to centralize the user authenticati

[Freeipa-users] Re: Error when trying to login on a CentOS 6 and OTP Token is enabled but not enforced in an account

2019-07-07 Thread Raul Gomez via FreeIPA-users
Just in case it helps to get more visibility on this issue, following you can find the related logs to a failed attempt to run sudo in the CentOS 6 server by a IPA user: /var/log/secure Log: Jul 6 21:41:05.664 sshd[9160]: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=s