Skip to content

Removal script doesn't work after using chall+resp #1

@defau1t

Description

@defau1t

I noticed that the removal script works fine if I've just inserted the yubikey, however if I remove it after logging in, or authenticating with sudo, it is not detected. I was able to solve this by monitoring the removal action after authenticating and finding a unique field I could use in the udev rule.

The field I used for the Yubikey 5C is PRODUCT=1050/407/512.

To view fields associated with each action, run udevadm monitor --property and watch for the remove actions.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions