K
K
Konstantin2020-12-05 23:49:39
linux
Konstantin, 2020-12-05 23:49:39

OpenVPN AD LDAP+OTP Authentication Capability?

Is it possible to pass verification on OpenVPN server using username from AD and password using OTP plugin? As I understand it, we need a bunch of openvpn-auth-ldap and openvpn- otp
modules, but I don’t understand how to make sure that username is taken from AD, and password from OTP without using an AD password
+otp
Linux, pfsense, opnsense doesn't matter, as long as it works

Answer the question

In order to leave comments, you need to log in

1 answer(s)
O
Oleg Volkov, 2020-12-06
@voleg4u

OpenVPN works great with PAM, and LDAP can be implemented there. Moreover, there you can specify that the password is not used. The googleauthenticator is also inserted there.
You can read my paper. True, it uses one OTA key, and you will need more.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question