Kerberos OTP with RADIUS for kadmin

Robbie Harwood rharwood at redhat.com
Tue Aug 21 10:52:15 EDT 2018


John Devitofranceschi <jdvf at optonline.net> writes:

> I’m thinking about securing Kerberos administrative principals
> (*/admin and the like) with OTP using RADIUS.
>
> Will kadmin take kindly to that?  
>
> I have all the parts (RADIUS server, KDC, etc).  I just need to glue
> them together, but it would be nice to know first if it’s worth the
> effort.

(FreeIPA supports configuration of OTP/RADIUS for all user principals,
but we don't use the kadmin CLI interface, so I can't speak to this,
sorry.)

Thanks,
--Robbie


-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 832 bytes
Desc: not available
Url : http://mailman.mit.edu/pipermail/kerberos/attachments/20180821/fe0ae9f2/attachment.bin


More information about the Kerberos mailing list