Fedora bug https://bugzilla.redhat.com/show_bug.cgi?id=2321307
Steps to Reproduce:
Actual results: when upgraded (or newly installed) ipa version 4.12 you can bypass OTP authentication using ldapsearch and password authentication even if OTP is activated for this user.
Expected results: keep behavior as it's currently on 4.10: if authentication type password+OTP is activated for user -> enforce authentication using pwd+OTP
Metadata Update from @abbra: - Issue assigned to abbra
PR: https://github.com/freeipa/freeipa/pull/7618
Metadata Update from @rcritten: - Custom field rhbz adjusted to https://issues.redhat.com/browse/RHEL-69900
master:
ipa-4-12:
Metadata Update from @frenaud: - Issue close_status updated to: fixed - Issue status updated to: Closed (was: Open)