[Freeipa-users] sudo with OTP

Brad Bendy brad.bendy at gmail.com
Mon Mar 14 14:28:01 UTC 2016


HI,

I have OTP setup and working just fine for logging into any servers,
when attempting to run any command with sudo I get a "First factor:"
prompt, I have entered my normal password but it fails. This only
happens when OTP is on, with OTP off sudo works like you would think.

The logs on the machine im trying to sudo show:

Mar 14 08:23:13 ipatest audit: USER_AUTH pid=12495 uid=1818600003
auid=1818600003 ses=8
subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023
msg='op=PAM:authentication grantors=? acct="myusername"
exe="/usr/bin/sudo" hostname=? addr=? terminal=/dev/pts/0 res=failed'

Mar 14 08:23:13 ipatest audit: USER_CMD pid=12495 uid=1818600003
auid=1818600003 ses=8
subj=unconfined_u:unconfined_r:unconfined_t:s0-s0:c0.c1023
msg='cwd="/" cmd="su" terminal=pts/0 res=failed'

Which it not being much help at all, on the IPA server itself im
seeing nothing in the log when I run sudo, I do though when I login as
my normal user.

Google appears to have zero results on this, any clues what else I can
check? Seems odd to me!

Thanks




More information about the Freeipa-users mailing list