himmelblau-idm / himmelblau

Azure Entra ID Authentication, with PAM and NSS modules.
GNU General Public License v3.0
25 stars 3 forks source link

Deleting device object prevents authentication #151

Open dmulder opened 1 month ago

dmulder commented 1 month ago

We need to add an 'unenroll' option (perhaps to aad-tool?), otherwise Himmelblau just fails to authenticate when the device object is deleted from the directory. Right now the only work around is to delete everything in /var/cache/himmelblaud/ (and maybe /var/lib/himmelblaud/hsm-pin also?).