-
Notifications
You must be signed in to change notification settings - Fork 122
Unable to authenticate #86
Comments
I'm experiencing this exact same error with 2.20 on Ubuntu 16.04. It's infuriating to see /etc/pam.d/common-auth
/etc/pam.d/yubikey
|
I figured it out, it turns the docs are wrong for Ubuntu 16.04. (I don't know what exactly changed, and frankly I don't care since it's working.)
|
@Manouchehri can you share what you changed so others know how to fix the problem you ran into? |
It's been over two years since I had this problem and I honestly don't remember it, but I'd assume editing |
@ctodd did it work for you what @Manouchehri did in comment above? |
@rmldsky my issue was different and was related to changes in OpenVPN, the Viscosity VPN client, and a necessary upgrade to 2.4. There is also an additional configuration option auth-gen-token required to enable token based re-authentication (i.e. the Yubikey OTP expires before the re-authentication which occurs ever hour when the TLS keys are renegotiated. https://www.sparklabs.com/support/kb/article/advanced-configuration-commands/ Hope this helps. |
I'm trying to harden an OpenVPN installation by adding yubikey otp. Clients currently authenticate using client certificates. I'd like to require yubikey otp on top of that, in case someone's computer is stolen. When turning on the plugin and connecting, I experience this error (openvpn log):
Plugin log:
/etc/pam.d/openvpn
:/etc/openvpn/udp-otp.conf
:The text was updated successfully, but these errors were encountered: