himmelblau-idm / himmelblau

Azure Entra ID Authentication, with PAM and NSS modules.

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Deleting device object prevents authentication

dmulder opened this issue · comments

We need to add an 'unenroll' option (perhaps to aad-tool?), otherwise Himmelblau just fails to authenticate when the device object is deleted from the directory.
Right now the only work around is to delete everything in /var/cache/himmelblaud/ (and maybe /var/lib/himmelblaud/hsm-pin also?).