Hi @cornelinux,
Thanks a lot for your answer.
I tried it and it worked. The problem is that if a user doesn’t create an OTP token, he would still be able to authenticate against his LDAP password only. So the passthru policy would give a user a way to create his OTP token for the first time but if he chooses to ignore, he would still be able to authenticate. Is there a way to only apply the passthru policy for a certain amount of time? Just to let the new users to create their OTP tokens?
Cool stuff. I’ll also give the SPASS tokens a try.
Thanks