[Freeipa-users] 2-Factor and services

Dmitri Pal dpal at redhat.com
Wed Feb 25 23:28:23 UTC 2015


On 02/25/2015 04:54 PM, Matt Wells wrote:
> I've got many of users setup with 2-Factor and I'd like to enforce it 
> with some services.
> For example.
> Server vpn.example.com <http://vpn.example.com> is an openvpn servers 
> setup to use PAM.
> Since he's tied to my 4.X IDM servers I can use 2-Factor with him.  
> However I want to enforce that users from this system/service require 
> 2-Factor.
> Can anyone point me in the right direction?  My Google Foo is showing 
> to be poor on this one and any guidance would be appreciated.
>
> As always thanks for taking the time to read over this.
>
>
So do you want to use 2FA for some users and 1FA for others or do you 
want to have flexibility to use 2FA for the same user on one system and 
not another?
Do you plan to use external tokens like RSA or you plan to use native 
OTP support in IPA?




-- 
Thank you,
Dmitri Pal

Sr. Engineering Manager IdM portfolio
Red Hat, Inc.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/freeipa-users/attachments/20150225/e9711fcc/attachment.htm>


More information about the Freeipa-users mailing list