Yubico Forum
https://forum.yubico.com/

[Question] How to Sync YubiApp Keys Between Server Instances
https://forum.yubico.com/viewtopic.php?f=29&t=1050
Page 1 of 1

Author:  agizmo [ Wed May 01, 2013 9:39 pm ]
Post subject:  [Question] How to Sync YubiApp Keys Between Server Instances

I'm wanting to setup a second instance of YubiRAIDUS and sync my two servers for redundancy. Based on the documentation I know I must import the user list, AES keys, etc on each server individually and then the built in sync feature will keep the OTP counters & ID-to-User mappings. If I want to use YubiApp on my iPad or Android Phone, how can I sync the public/private/AES key information between the server instances? As far as I know there is not a way to save the information generated at the YubiApp page of server 1 for import into server 2.

Author:  samir [ Wed Jul 31, 2013 12:41 pm ]
Post subject:  Re: [Question] How to Sync YubiApp Keys Between Server Insta

Hello,

The information is available in the "YubiRADIUS Configuration Guide" "Chapter 15 - Appendix 6: YubiApp Registration" available at "http://www.yubico.com/wp-content/uploads/2012/12/YubiRADIUS_Virtual_Appliance_3_6_0.pdf"

YubiKey Import File for YubiApp:

When the ‘YubiApp Registration’ successfully completes, the corresponding backup Yubikey details (like AES Key, Public Id) gets stored in the ‘YubiApp_import.csv’ file which is present at location:

/var/www/YubiApp/import

Under Synchronization tab, administrators can import the ‘YubiApp_import.csv’ file on synchronized instances so that backup YubiKey functionality can be used with synchronization. ‘YubiApp_import.csv’ file is a log file containing backup YubiKey credentials in the “Original Windows Personalization Tool format”.

(1,ejcbfgjjlftu,108c23fed523,6f4e4acb435b11455f8daa6dc49e41dd,000000000000,,,)

The Administrator can import ‘YubiApp_import.csv’ file manually from ‘YubiKeys Import’ tab of the corresponding domain to add these backup YubiKeys on synchronized instances.

FYI,
This is the same option used for the "YubiKey Import".

Before import please copy the "YubiApp_import.csv" file to your local machine from the YubiRADIUS VM path "/var/www/YubiApp/import"

Go to "YubiRADIUS Virtual Appliance " webmin interface >> "Select "Import YubiKeys" tab >> "Log file source" to be selected as "Original Windows Personalization tool" >> "Select file "YubiApp_import.csv" to upload" from local machine >> Click on "Upload"

You can upload "YubiApp_import.csv" file to all synchronous instances of the YubiRADIUS as per the steps above.

Thanks and best regards,
Samir.

Page 1 of 1 All times are UTC + 1 hour
Powered by phpBB® Forum Software © phpBB Group
https://www.phpbb.com/