<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=16&amp;t=1150" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2013-08-30T05:36:15+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=16&amp;t=1150</id>
<entry>
<author><name><![CDATA[cometaj]]></name></author>
<updated>2013-08-30T05:36:15+01:00</updated>
<published>2013-08-30T05:36:15+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=1150&amp;p=4317#p4317</id>
<link href="https://forum.yubico.com/viewtopic.php?t=1150&amp;p=4317#p4317"/>
<title type="html"><![CDATA[Yubikey HMAC-SHA1 PAM Authentication on Snow Leopard Logon]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=1150&amp;p=4317#p4317"><![CDATA[
Hello folks,<br /><br />I recently configured my Macbook Pro running OSX 10.8.4 and was able to configure login (/etc/pam.d/authorization) and sudo (/etc/pam.d/sudo). I'll probably configure further but this is good enough for now. PAM works great and is easy to configure. No problem there.<br /><br />I'm looking to do the same on my older 2007 iMac running OSX Snow Leopard 10.6.8 (I can't upgrade much further because of various considerations but I like 10.6.8 anyways so that box is gonna die on 10.6.8  <img src="https://forum.yubico.com/images/smilies/icon_e_biggrin.gif" alt=":D" title="Very Happy" /> ) and was able to configure sudo (/etc/pam.d/sudo) similarly to what I did on OSX 10.8.4.<br /><br />But login authentication seems to be configured differently than through PAM (I'm gathering via /etc/authorization) using an entirely different configuration model which I'm not very familiar with. I've worked with PAM a bit before so it was easy to navigate but I'm not finding what I'm looking for looking for on the net for /etc/authorize configuration vs PAM on yubikey HMAC-SHA1 challenge-response for Snow Leopard. I got some hits on for Kerberos authentication on Snow Leopard but it didn't give me much other than pointing me in the direction of /etc/authorization.<br /><br />Is there an already pre-chewed configuration I can use for /etc/authorization to make my yubikey PAM authenticate on login in the same capacity as with /etc/pam.d/ via:<br /><br /><strong>auth       required       pam_yubico.so mode=challenge-response</strong><br /><br />Any pointer would be greatly appreciated.<br /><br />Regards<br />Jeff<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2564">cometaj</a> — Fri Aug 30, 2013 5:36 am</p><hr />
]]></content>
</entry>
</feed>