Git Product home page Git Product logo

Comments (3)

Gadgetoid avatar Gadgetoid commented on August 17, 2024

Challenge-response support doesn't look promising for Bio?

pam-u2f works- detailed here: https://developers.yubico.com/pam-u2f/ (:warning: read up and know what you're doing before following my balmy instructions, a botched pam config will lock you out and /etc/u2f_mappings is not readable from an encrypted drive.)

These steps worked for me on Linux Mint.

Install and create mapping for your user:

sudo apt install libpam-u2f
pamu2fcfg -uYOURUSERNAME | sudo tee -a /etc/u2f_mappings

Edit the pam config:

sudo nano /etc/pam.d/common-auth

Add:

auth    sufficient                      pam_u2f.so authfile=/etc/u2f_mappings

Right after:

# here are the per-package modules (the "Primary" block)

Pop a new shell and run "sudo ls" to test. Practise touching the key in just the right way. 3 failed attempts will cause a lockout and you'll have to fire up Yubico Authenticator to unblock. This seems an odd design choice... I guess you can bruteforce a fingerprint.

I think "sufficient" is... sufficient. I have my 5Ci set up with pam-u2f, too, but anyone can touch that and log right in to my computer if I leave it plugged in.

from yubico-pam.

 avatar commented on August 17, 2024

thanks @Gadgetoid ! because you helped me i was able to make it work with sudo, login, sddm, and kde login

from yubico-pam.

Gadgetoid avatar Gadgetoid commented on August 17, 2024

No worries- you might also find this interesting, though I had to modify a fair bit to work with my setup: https://gist.github.com/seanlinmt/2530b60e108a0d60d0faed4277e86595

from yubico-pam.

Related Issues (20)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.