LinuxQuestions.org

LinuxQuestions.org (/questions/)
-   Linux - Software (https://www.linuxquestions.org/questions/linux-software-2/)
-   -   Freeradius + google authenticator without local password (https://www.linuxquestions.org/questions/linux-software-2/freeradius-google-authenticator-without-local-password-4175601621/)

jaha 03-12-2017 02:21 PM

Freeradius + google authenticator without local password
 
Hi

I wanna enable freeradius to only look at the token code that renews every 30 seconds. Right now I have to type in the local linux password directly followed by the token. Im using cisco anyconnect with AD + google authenticator. So there is two input fields one where you put in your ad password and the other the token. (right now linux local password + token).

I tried remove a password from the user but then it doesn't work at all. Running debian.

Folowed this guide. http://www.petenetlive.com/KB/Article/0001256

Is there a way to tell freeradius to only look at the token code?

Regards.

ondoho 03-14-2017 01:24 AM

please don't assume that we know each and every piece of software.

your post is missing crucial information.

please read the first link in my signature.

jaha 03-14-2017 04:24 AM

Solution's was to comment out

auth requisite /usr/local/lib/security/pam_google_authenticator.so forward_pass
#auth required pam_unix.so use_first_pass


All times are GMT -5. The time now is 04:35 PM.