How can I view the actual OTP hashes in the LDAP database?
I want to migrate away from FreeIPA-provided OTP to a different backend but I do not want users to be forced to scan a new QR code. I do not see anything relevant in cn=otp,dc=example,dc=com
On 03/10/2025 14:11, G H via FreeIPA-users wrote:
How can I view the actual OTP hashes in the LDAP database?
I want to migrate away from FreeIPA-provided OTP to a different backend but I do not want users to be forced to scan a new QR code. I do not see anything relevant in cn=otp,dc=example,dc=com
Try 'ipa otptoken-find --all`; add '--raw' if you want to see the names of the ldap attributes on each entry.
freeipa-users@lists.fedorahosted.org