Duo Two-Factor Authentication Login Handler
Tom Scavo
trscavo at gmail.com
Thu May 10 21:40:47 BST 2012
The Duo Two-Factor Authentication Login Handler [1] has been
contributed to the Shibboleth community by Duo Security
(duosecurity.com). The login handler adds two-factor authentication to
an existing JAAS user authentication for Shibboleth identity
providers. It is based on the Shibboleth UsernamePassword login
handler.
Documentation describing how to install the handler [2] is provided in
github. It requires you to sign up for Duo Web [3], which is free for
up to 10 users. Duo is cloud-based and therefore easy to install, at
either the SP or the IdP. (The login handler is meant to be used at
the IdP of course.)
An entry has been added to the shib contributions page
(https://wiki.shibboleth.net/confluence/x/EIFC).
Related to this, Duo Security and Internet2 recently announced a
partnership to bring a site licensing program to the higher ed
community [4,5]. InCommon participation is required to take part in
this program, which opens later this month.
[1] https://github.com/duosecurity/duo_shibboleth
[2] https://github.com/duosecurity/duo_shibboleth/tree/master/twofactor-login-handler
[3] http://www.duosecurity.com/docs/duoweb
[4] http://www.duosecurity.com/press-releases/internet2-and-duo-security-to-offer
[5] https://spaces.internet2.edu/x/zovNAQ
More information about the users
mailing list