The PAM 2FA module provides a second factor authentication, which can be combined with the standard PAM-based password authentication to ask for:
pam_ssh_user_auth checks the value of SSH_USER_AUTH and will return success if is non-empty and failure if it is. It can be used to skip other PAM authentication methods with a configuration like:
auth [success=1 ignore=ignore default=die] pam_ssh_user_auth.so
auth substack password-auth
Please login to add feedback.
This update has been submitted for testing by orion.
This update has been pushed to testing.
This update has reached 14 days in testing and can be pushed to stable now if the maintainer wishes
This update has been submitted for batched by orion.
This update has been submitted for stable by bodhi.
This update has been pushed to stable.