Ylianst / MeshCentralRouter

Windows tool that performs TCP/UDP port mapping thru the MeshCentral server
https://meshcentral.com
Apache License 2.0
53 stars 38 forks source link

2FA FIDO Authentication for Router #56

Open deajan opened 1 year ago

deajan commented 1 year ago

Describe the bug

Hello, I've setup 2FA FIDO2/WebAuthn on Meshcentral v1.1.4 using a Yubikey (without the yubikey id/secret part since we're using FIDO2 instead of Yubi OTP which is outphased). So far everything works like a charm, except for the MeshcentralRouter (v1.8.8332) which asks for a token. Touching my Yubikey "keyboard types" a token into MeshcentralRouter, but obviously that's a OTP token, whereas a FIDO2 inquiry should have been sent by MeshCentralRouter to the OS that interacts with the hardware key.

To Reproduce Steps to reproduce the behavior:

  1. Setup FIDO2 on Meshcentral
  2. Download router
  3. Enter username and password
  4. Meshcentral Router asks for a token image

Expected behavior Instead of asking for a OTP token, meshcentral router should behave juste like the meshcentral online app.

Server Software (please complete the following information):

Remote Device (please complete the following information):

deajan commented 1 year ago

Anyone ?

si458 commented 4 days ago

if you want to donate a FIDO key/money to myself then please do and i can look into it with buying one/using one! https://www.si458.co.uk/2024/01/05/donation/