russianway:adds_join
Различия
Показаны различия между двумя версиями страницы.
Следующая версия | Предыдущая версия | ||
russianway:adds_join [2025/02/14 15:51] – создано root | russianway:adds_join [2025/02/18 19:14] (текущий) – [Rutoken 2fa] root | ||
---|---|---|---|
Строка 20: | Строка 20: | ||
sudo apt install astra-ad-sssd-client -y | sudo apt install astra-ad-sssd-client -y | ||
sudo astra-ad-sssd-client -y -d {{ server.domain }} -u {{ defaults.domainadmin }} | sudo astra-ad-sssd-client -y -d {{ server.domain }} -u {{ defaults.domainadmin }} | ||
+ | </ | ||
+ | |||
+ | ====== Rutoken 2fa ====== | ||
+ | <code bash> | ||
+ | sudo apt install libccid pcscd libpcsclite1 pcsc-tools opensc libengine-pkcs11-openssl1.1 -y | ||
+ | sudo apt install libnss3-tools krb5-pkinit libpam-krb5 -y | ||
+ | </ | ||
+ | |||
+ | <code bash> | ||
+ | sudo cp rutoken_pub.key / | ||
+ | sudo update-initramfs -u -k all | ||
+ | </ | ||
+ | |||
+ | <code bash> | ||
+ | sudo reboot | ||
+ | </ | ||
+ | |||
+ | <code bash> | ||
+ | sudo apt install -f ./ | ||
+ | sudo apt install -f ./ | ||
+ | </ | ||
+ | |||
+ | |||
+ | <code bash> | ||
+ | sudo mkdir / | ||
+ | sudo chmod 777 / | ||
+ | sudo certutil -N -d / | ||
+ | sudo certutil -d / | ||
+ | </ | ||
+ | <code bash> | ||
+ | sudo modutil -dbdir / | ||
+ | # | ||
+ | sudo certutil -L -d / | ||
+ | </ | ||
+ | <code bash> | ||
+ | sudo mkdir /etc/krb5/ | ||
+ | sudo cp cacert.pem /etc/krb5/ -v | ||
+ | </ | ||
+ | |||
+ | <code bash | / | ||
+ | [libdefaults] | ||
+ | ... | ||
+ | | ||
+ | | ||
+ | | ||
+ | | ||
+ | </ | ||
+ | |||
+ | <code bash | / | ||
+ | [pam] | ||
+ | pam_cert_auth = True | ||
+ | </ | ||
+ | |||
+ | <code bash | / | ||
+ | auth [success=6 default=ignore] | ||
+ | </ | ||
+ | <code bash | / | ||
+ | Auth-Initial: | ||
+ | [success=end default=ignore] | ||
</ | </ |
russianway/adds_join.1739537469.txt.gz · Последнее изменение: 2025/02/14 15:51 — root