Thank you for this and it is very good knowledge to have. In my situation I am able to add the TOTP as an option, which means I am answering back the challenge code correctly, which I think rules out the system clock being an issue.I have no idea what the current problem is, but I want to post a generic reminder for basic knowledge: the most fundamental problem with TOTP is that the clocks may drift apart. Only a few seconds are acceptable; the interval between renewals is 30 seconds (usually).
Aug 27 11:21:27 pve1 perl[13946]: rp_id is not an effective_domain of rp_origin
Aug 27 11:21:27 pve1 pvedaemon[13946]: authentication failure; rhost=::ffff:10.0.0.91 user=root@pam msg=failed to begin webauthn context instantiation: The configuration was invalid
Aug 27 11:21:48 pve1 perl[13945]: rp_id is not an effective_domain of rp_origin
Aug 27 11:21:48 pve1 pvedaemon[13945]: authentication failure; rhost=::ffff:10.0.0.91 user=root@pam msg=failed to begin webauthn context instantiation: The configuration was invalid
Aug 27 11:22:05 pve1 perl[13947]: rp_id is not an effective_domain of rp_origin
Aug 27 11:22:05 pve1 pvedaemon[13947]: authentication failure; rhost=::ffff:10.0.0.91 user=root@pam msg=failed to begin webauthn context instantiation: The configuration was invalid
webauthn: ...
We use essential cookies to make this site work, and optional cookies to enhance your experience.