[Freeipa-devel] [PATCH] 907 webui: add LDAP vs Kerberos behavior description to user auth types

Petr Vobornik pvoborni at redhat.com
Mon Aug 10 11:05:26 UTC 2015


Text in the ticket is IMHO wrong. Patch uses different text.:
""""
If you choose the password and two-factor authentication types at once,
Kerberos still enforces authentication with both password and OTP. LDAP 
allows authentication with either one of the authentication types in 
this situation.
"""

One can also use only "Password" with kinit but must provide an armor 
ccache.

e.g.:
$ kinit admin
$ klist
Ticket cache: KEYRING:persistent:17127:17127
...
$ kinit -T KEYRING:persistent:17127:17127 fbar


https://fedorahosted.org/freeipa/ticket/4935
-- 
Petr Vobornik
-------------- next part --------------
A non-text attachment was scrubbed...
Name: freeipa-pvoborni-0907-webui-add-LDAP-vs-Kerberos-behavior-description-to-u.patch
Type: text/x-patch
Size: 6101 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20150810/55434425/attachment.bin>


More information about the Freeipa-devel mailing list