<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=12&amp;t=2536" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2017-01-23T14:41:44+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=12&amp;t=2536</id>
<entry>
<author><name><![CDATA[NorbertR]]></name></author>
<updated>2017-01-23T14:41:44+01:00</updated>
<published>2017-01-23T14:41:44+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=2536&amp;p=9302#p9302</id>
<link href="https://forum.yubico.com/viewtopic.php?t=2536&amp;p=9302#p9302"/>
<title type="html"><![CDATA[[QUESTION]openvpn/pam_yubico entered LDAP-Password+OTPString]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=2536&amp;p=9302#p9302"><![CDATA[
Hello Guys,<br /><br />is there any way to use any extracted LDAP-Password for LDAP-Authentication if you're using Yubico with OpenVPN?<br /><br />We want to use OpenVPN with an 2-Factor-Authentication and it seems that the PAM-yubico Module extract the OTP String from the Password-field and saves the Password String internal for future use.<br />But it doesn't seem to use it at all.<br /><br />The Setup checks the OTP String against the LDAP as specified (looking for the yubi_attr for the YubiKeyIDs) and if it success, it let the User pass, but we want also to authenticate the User with it's LDAP-Password.<br />Any suggestions where to look, if i doesn't seem to look through the Forest for the Trees ori is it still an not-developed feature?<br /><br />MfG<br />Norbert<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=4638">NorbertR</a> — Mon Jan 23, 2017 2:41 pm</p><hr />
]]></content>
</entry>
</feed>