mirror of
https://github.com/NationalSecurityAgency/ghidra.git
synced 2026-09-28 17:11:11 -09:00
GT-2658 - Active Directory via Kerberos authentication
This commit is contained in:
@@ -21,8 +21,7 @@ then
|
||||
echo "Login failed: username has 'bad' in it: $NAME" 1>&2
|
||||
exit 100
|
||||
else
|
||||
echo "OK"
|
||||
echo "Login successful" 1>&2
|
||||
fi
|
||||
|
||||
echo "Returning from script" 1>&2
|
||||
|
||||
|
||||
@@ -6,7 +6,8 @@
|
||||
|
||||
auth {
|
||||
net.sf.jpam.jaas.JpamLoginModule required
|
||||
// the serviceName parameter controls which PAM service Ghidra will try to authenticate against
|
||||
// The serviceName parameter controls which PAM service Ghidra will try to authenticate against.
|
||||
// This corresponds to a file called /etc/pam.d/<serviceName>
|
||||
serviceName="system-auth"
|
||||
;
|
||||
};
|
||||
|
||||
@@ -16,7 +16,7 @@
|
||||
auth {
|
||||
com.sun.security.auth.module.LdapLoginModule REQUIRED
|
||||
userProvider="ldaps://<your_active_directory_ldap_server_hostname>:3269"
|
||||
authIdentity="{USERNAME}@<your_active_directory_domain_name>"
|
||||
authIdentity="{USERNAME}@<your_active_directory_domain_name.tld>"
|
||||
userFilter="(sAMAccountName={USERNAME})"
|
||||
debug=true;
|
||||
};
|
||||
@@ -115,6 +115,7 @@ ghidra.repositories.dir=./repositories
|
||||
# 0 - Private user password
|
||||
# 2 - PKI Authentication
|
||||
# 4 - JAAS Authentication
|
||||
# 5 - Active Directory via Kerberos. Requires -d<active_directory_domainname.tld>
|
||||
# -anonymous : enables anonymous repository access (see svrREADME.html for details)
|
||||
# -ssh : enables SSH authentication for headless clients
|
||||
# -e<days> : specifies default password expiration time in days (-a0 mode only, default is 1-day)
|
||||
|
||||
Reference in New Issue
Block a user