[SSSD-users] Re: SSSD with SSH key auth + MFA with Radius server

2019-05-10 Thread Nerigal
Hi, Never heard of PAM acting any how in the authentication mechanism with using SSH key. im using /usr/bin/sss_ssh_authorizedkeys to authenticate SSH key and so this is a sssd module right ? and this binary leads the auth mechanics to sssd using the configuration in sssd.conf Other thing

[SSSD-users] Re: SSSD with SSH key auth + MFA with Radius server

2019-05-10 Thread Sumit Bose
On Fri, May 10, 2019 at 08:46:00AM -0400, Nerigal wrote: > Hi, > > Never heard of PAM acting any how in the authentication mechanism with > using SSH key. Yes, because they are completely unrelated. > > im using /usr/bin/sss_ssh_authorizedkeys to authenticate SSH key and so > this is a sssd m

[SSSD-users] RHEL8 sssd-kcm can't accept credentials forwarded from sshd?

2019-05-10 Thread James Ralston
Now that RHEL8 is out, our site is again looking at whether it would be feasible to change our default Kerberos credentials storage from the kernel persistent keyring to sssd-kcm. Unfortunately, the answer still seems to be no, as we haven't been able to find a way to get Kerberos ticket forwardin

[SSSD-users] Re: SSSD with SSH key auth + MFA with Radius server

2019-05-10 Thread Nerigal
_Did you try this with_ _AuthenticationMethods publickey,keyboard-interactive_ _and_ _ChallengeResponseAuthentication yes_ _in sshd_config?_ Yes i did and it keep requesting the password in every cases i could try Now if the keys are provided by the id_provider This mean that in fact