From c5bc520135e6306df818a3f577af127ba18399bd Mon Sep 17 00:00:00 2001 From: Kevin Fenzi Date: Sat, 31 Jan 2015 00:23:41 +0000 Subject: Move this file to the right place --- ...pam_url.conf.fed-cloud09.cloud.fedoraproject.org | 21 +++++++++++++++++++++ pam_url.conf.fed-cloud09.cloud.fedoraproject.org | 21 --------------------- 2 files changed, 21 insertions(+), 21 deletions(-) create mode 100644 files/2fa/pam_url.conf.fed-cloud09.cloud.fedoraproject.org delete mode 100644 pam_url.conf.fed-cloud09.cloud.fedoraproject.org diff --git a/files/2fa/pam_url.conf.fed-cloud09.cloud.fedoraproject.org b/files/2fa/pam_url.conf.fed-cloud09.cloud.fedoraproject.org new file mode 100644 index 000000000..9ce7690b8 --- /dev/null +++ b/files/2fa/pam_url.conf.fed-cloud09.cloud.fedoraproject.org @@ -0,0 +1,21 @@ +pam_url: +{ + settings: + { + url = "https://fas-all.phx2.fedoraproject.org:8443/"; # URI to fetch + returncode = "OK"; # The remote script/cgi should return a 200 http code and this string as its only results + userfield = "user"; # userfield name to send + passwdfield = "token"; # passwdfield name to send + extradata = "&do=login"; # extradata to send + prompt = "Password+Token: "; # password prompt + }; + + ssl: + { + verify_peer = true; # Should we verify SSL ? + verify_host = true; # Should we verify the CN in the SSL cert? + client_cert = "/etc/pki/tls/private/totpcgi.pem"; # file to use as client-side certificate + client_key = "/etc/pki/tls/private/totpcgi.pem"; # file to use as client-side key (can be same file as above if a single cert) + ca_cert = "/etc/pki/tls/private/totpcgi-ca.cert"; + }; +}; diff --git a/pam_url.conf.fed-cloud09.cloud.fedoraproject.org b/pam_url.conf.fed-cloud09.cloud.fedoraproject.org deleted file mode 100644 index 9ce7690b8..000000000 --- a/pam_url.conf.fed-cloud09.cloud.fedoraproject.org +++ /dev/null @@ -1,21 +0,0 @@ -pam_url: -{ - settings: - { - url = "https://fas-all.phx2.fedoraproject.org:8443/"; # URI to fetch - returncode = "OK"; # The remote script/cgi should return a 200 http code and this string as its only results - userfield = "user"; # userfield name to send - passwdfield = "token"; # passwdfield name to send - extradata = "&do=login"; # extradata to send - prompt = "Password+Token: "; # password prompt - }; - - ssl: - { - verify_peer = true; # Should we verify SSL ? - verify_host = true; # Should we verify the CN in the SSL cert? - client_cert = "/etc/pki/tls/private/totpcgi.pem"; # file to use as client-side certificate - client_key = "/etc/pki/tls/private/totpcgi.pem"; # file to use as client-side key (can be same file as above if a single cert) - ca_cert = "/etc/pki/tls/private/totpcgi-ca.cert"; - }; -}; -- cgit