{"id":185,"date":"2015-08-10T18:24:24","date_gmt":"2015-08-10T18:24:24","guid":{"rendered":"http:\/\/ldapcon.org\/2015\/?page_id=185"},"modified":"2015-11-23T19:04:07","modified_gmt":"2015-11-23T19:04:07","slug":"2-factor-authentication-with-openldap-oath-hotp-and-yubikey","status":"publish","type":"page","link":"https:\/\/ldapcon.org\/2015\/accepted-papers\/2-factor-authentication-with-openldap-oath-hotp-and-yubikey\/","title":{"rendered":"2-factor Authentication with OpenLDAP, OATH-HOTP and Yubikey"},"content":{"rendered":"<h1>2-factor Authentication with OpenLDAP, OATH-HOTP and Yubikey<\/h1>\n<p>Axel Hoffmann<\/p>\n<h2>Abstract<\/h2>\n<p>In this lightning talk I present an approach for using an LDAP server directly as OATH-HOTP backend using Yubikey as 2nd factor for a simple bind request.<\/p>\n<p>A current implementation uses OpenLDAP&#8217;s back-sock used as overlay to intercept the bind requests and pass them to an external process which does the OTP validation.<\/p>\n<p>Challenges in a two-tier replication setup up are briefly discussed.<\/p>\n<h2>Presentation<\/h2>\n<p><a href=\"http:\/\/ldapcon.org\/2015\/wp-content\/uploads\/2015\/09\/hoffmann-ldap2fa-yubikey.pdf\">2-FACTOR AUTHENTICATION WITH OPENLDAP, OATH-HOTP AND YUBIKEY<\/a> &#8211; slides<\/p>\n<p>&nbsp;<\/p>\n<div id=\"attachment_550\" style=\"width: 256px\" class=\"wp-caption alignnone\"><a href=\"http:\/\/ldapcon.org\/2015\/wp-content\/uploads\/2015\/08\/ps100_02002.jpg\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-550\" class=\"size-medium wp-image-550\" src=\"http:\/\/ldapcon.org\/2015\/wp-content\/uploads\/2015\/08\/ps100_02002-246x300.jpg\" alt=\"Axel Hoffmann\" width=\"246\" height=\"300\" srcset=\"https:\/\/ldapcon.org\/2015\/wp-content\/uploads\/2015\/08\/ps100_02002-246x300.jpg 246w, https:\/\/ldapcon.org\/2015\/wp-content\/uploads\/2015\/08\/ps100_02002.jpg 593w\" sizes=\"auto, (max-width: 246px) 100vw, 246px\" \/><\/a><p id=\"caption-attachment-550\" class=\"wp-caption-text\">Axel Hoffmann<\/p><\/div>\n","protected":false},"excerpt":{"rendered":"<p>2-factor Authentication with OpenLDAP, OATH-HOTP and Yubikey Axel Hoffmann Abstract In this lightning talk I present an approach for using an LDAP server directly as OATH-HOTP backend using Yubikey as 2nd factor for a simple bind request. A current implementation&#8230; <a class=\"read-more-button\" href=\"https:\/\/ldapcon.org\/2015\/accepted-papers\/2-factor-authentication-with-openldap-oath-hotp-and-yubikey\/\">(READ MORE)<\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"parent":76,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"template-without-title.php","meta":{"footnotes":""},"class_list":["post-185","page","type-page","status-publish","hentry"],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ldapcon.org\/2015\/wp-json\/wp\/v2\/pages\/185","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ldapcon.org\/2015\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/ldapcon.org\/2015\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/ldapcon.org\/2015\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/ldapcon.org\/2015\/wp-json\/wp\/v2\/comments?post=185"}],"version-history":[{"count":5,"href":"https:\/\/ldapcon.org\/2015\/wp-json\/wp\/v2\/pages\/185\/revisions"}],"predecessor-version":[{"id":558,"href":"https:\/\/ldapcon.org\/2015\/wp-json\/wp\/v2\/pages\/185\/revisions\/558"}],"up":[{"embeddable":true,"href":"https:\/\/ldapcon.org\/2015\/wp-json\/wp\/v2\/pages\/76"}],"wp:attachment":[{"href":"https:\/\/ldapcon.org\/2015\/wp-json\/wp\/v2\/media?parent=185"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}