[Freeipa-devel] [PATCH 0080] Expose the disabled User Auth Type

Petr Vobornik pvoborni at redhat.com
Wed Dec 3 16:18:27 UTC 2014


On 13.11.2014 18:04, Nathaniel McCallum wrote:
> Additionally, fix a small bug in ipa-kdb so that the disabled User
> Auth Type is properly handled.
>
> https://fedorahosted.org/freeipa/ticket/4720
>

The patch itself looks good to me, VERSION needs to be updated though.

But I don't think it works. Don't know why. In my setup, user's config 
was not ignored.

When I tested login in Web UI with:

- global config: disabled, otp
- user fbar's config:  password
- fbar had an hotp token assigned

I could still login with password and not with otp. If I added 'otp' to 
fbar's config, I could also login with otp.
-- 
Petr Vobornik




More information about the Freeipa-devel mailing list