Description
Internal OTP.
Setup
Prerequisites
How to test
Preparation
First, log in as the admin:
# kinit admin
Second, we will create a user for OTP testing:
# ipa user-add otp --random
Third, we need to log in as the new user. This will force a password change. This is important since OTP does not yet implement password changing.
# kinit otp
Enabling OTP
Enabling FAST
Clients which will support OTP, like SSSD, will enable FAST automatically. However, for testing purposes, kinit requires manual configuration.
First, we need to log in as the admin user (or really any user) so that we can use this user's ccache to enable FAST.
# kinit admin # klist
Expected Results
All the test steps should end with the specified results.