<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=23&amp;t=1136" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2013-08-19T09:18:30+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=23&amp;t=1136</id>
<entry>
<author><name><![CDATA[Tom]]></name></author>
<updated>2013-08-19T09:18:30+01:00</updated>
<published>2013-08-19T09:18:30+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=1136&amp;p=4263#p4263</id>
<link href="https://forum.yubico.com/viewtopic.php?t=1136&amp;p=4263#p4263"/>
<title type="html"><![CDATA[Re: can't get pam_yubico to work for me (local auth server)]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=1136&amp;p=4263#p4263"><![CDATA[
Hello,<br /><br />There are numerous threads about PAM in the forum.<br /><br />Please read this full thread and check if the guide posted at the bottom is of any help for you.<br /><br /><!-- l --><a class="postlink-local" href="http://forum.yubico.com/viewtopic.php?f=23&amp;t=822&amp;start=10">viewtopic.php?f=23&amp;t=822&amp;start=10</a><!-- l --><p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2195">Tom</a> — Mon Aug 19, 2013 9:18 am</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[mdwuznik]]></name></author>
<updated>2013-08-18T03:08:44+01:00</updated>
<published>2013-08-18T03:08:44+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=1136&amp;p=4260#p4260</id>
<link href="https://forum.yubico.com/viewtopic.php?t=1136&amp;p=4260#p4260"/>
<title type="html"><![CDATA[can't get pam_yubico to work for me (local auth server)]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=1136&amp;p=4260#p4260"><![CDATA[
Hi, <br /><br />I have set up a test rig of a Debian 7 hyper-v machine and have set up an auth server on localhost <br /><br />Judging by <br /><br />wget -q -O - <!-- m --><a class="postlink" href="http://localhost:8000/wsapi/2.0/verify?otp=">http://localhost:8000/wsapi/2.0/verify?otp=</a><!-- m -->&lt;otp&gt;<br />h=<br />t=2013-08-18T03:43:11.248Z<br />otp=&lt;otp&gt;<br />nonce=<br />sl=100<br />status=OK<br /><br />the auth server is alive and kicking.<br /><br />(configured with my own values for OTP, disconnected from yubico itself)<br /><br />As the machine is a Hyperv-guest (so, no support for 'transplugging' the yubikey connected to host to guest system)<br />I wonder how would I proceed with PAM auth for SSH (for the start, I'm going to use yubikeys also to login to this particular machine)<br />Traditional way (challenge-response) requires plugging the yubikey in the machine for config (ykpersonalize, ykpamcfg).<br /><br />Hence I try to config PAM for pam_yubico.so<br />putting:<br />    auth required pam_yubico.so debug authfile=/etc/yubiauth url:http://localhost:8000/wsapi/2.0/verify?otp=%s<br /><br /><br />yubiauth file contains:<br />    tester:&lt;12firstmodhexcharsofotp&gt;<br /><br />unfortunately, when trying ssh for user tester I get Permission denied message, <br />no matter if I put the password of the user or the OTP.<br /><br />Could you point me if that's a problem of the auth server config or pam config?<br /><br />Thanks<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2540">mdwuznik</a> — Sun Aug 18, 2013 3:08 am</p><hr />
]]></content>
</entry>
</feed>