Re: 2FA policy for provenpackagers is now active
Kashyap Chamarthy <[email protected]>
| Newsgroups | gmane.linux.redhat.fedora.devel |
|---|---|
| Message-ID | <aj0EmOZxpsrTMj7X@fjell> |
On Mon, Jun 24, 2024 at 10:13:40AM -0700, Kevin Fenzi wrote:
> On Mon, Jun 24, 2024 at 04:53:22PM GMT, Leigh Scott wrote:
[...]
> > If you do nightly shutdown you would need to enter it many times per week.
>
> Are you not using sssd-kcm?
>
> It stores your kerberos credentials so they survive reboots, etc.
>
> All web logins in infra should honor your kerberos credentials, so if
> you have a valid ticket, it should just log you in without having to
> enter anything.
>
> tickets are valid for 24hours and can be renewed for 1 week. (Either via
> gnome online accounts or just 'kinit -R')
Also, I see that we can get a renewable Kerberos ticket that is valid
for 7 days:
$ kinit -r 7d [email protected]
(Then one can just do `kinit -R`, w/o a password prompt.)
--
Kashyap Chamarthy / Red Hat / RISC-V and Fedora
--
_______________________________________________
devel mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it: https://forge.fedoraproject.org/infra/tickets/issues/new