[Freeipa-devel] [PATCH] 907 webui: add LDAP vs Kerberos behavior description to user auth types

Jan Cholasta jcholast at redhat.com
Mon Aug 10 12:54:37 UTC 2015


Dne 10.8.2015 v 14:52 David Kupka napsal(a):
> On 10/08/15 13:05, Petr Vobornik wrote:
>> Text in the ticket is IMHO wrong. Patch uses different text.:
>> """"
>> If you choose the password and two-factor authentication types at once,
>> Kerberos still enforces authentication with both password and OTP. LDAP
>> allows authentication with either one of the authentication types in
>> this situation.
>> """
>>
>> One can also use only "Password" with kinit but must provide an armor
>> ccache.
>>
>> e.g.:
>> $ kinit admin
>> $ klist
>> Ticket cache: KEYRING:persistent:17127:17127
>> ...
>> $ kinit -T KEYRING:persistent:17127:17127 fbar
>>
>>
>> https://fedorahosted.org/freeipa/ticket/4935
>>
>>
> Works for me, ACK.
>

Pushed to:
master: ebc7ab1efedb99bd7aa80f53d1f845c3bdce8278
ipa-4-2: dcd8a154e64ac40273cf0d1f7c3e3478856c52ad

-- 
Jan Cholasta




More information about the Freeipa-devel mailing list