Return-Path: Delivered-To: apmail-geronimo-dev-archive@www.apache.org Received: (qmail 71391 invoked from network); 1 Aug 2009 23:16:36 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (140.211.11.3) by minotaur.apache.org with SMTP; 1 Aug 2009 23:16:36 -0000 Received: (qmail 84028 invoked by uid 500); 1 Aug 2009 23:16:39 -0000 Delivered-To: apmail-geronimo-dev-archive@geronimo.apache.org Received: (qmail 83939 invoked by uid 500); 1 Aug 2009 23:16:39 -0000 Mailing-List: contact dev-help@geronimo.apache.org; run by ezmlm Precedence: bulk list-help: list-unsubscribe: List-Post: Reply-To: dev@geronimo.apache.org List-Id: Delivered-To: mailing list dev@geronimo.apache.org Received: (qmail 83845 invoked by uid 99); 1 Aug 2009 23:16:39 -0000 Received: from nike.apache.org (HELO nike.apache.org) (192.87.106.230) by apache.org (qpsmtpd/0.29) with ESMTP; Sat, 01 Aug 2009 23:16:39 +0000 X-ASF-Spam-Status: No, hits=-2000.0 required=10.0 tests=ALL_TRUSTED X-Spam-Check-By: apache.org Received: from [140.211.11.140] (HELO brutus.apache.org) (140.211.11.140) by apache.org (qpsmtpd/0.29) with ESMTP; Sat, 01 Aug 2009 23:16:35 +0000 Received: from brutus (localhost [127.0.0.1]) by brutus.apache.org (Postfix) with ESMTP id D9747234C053 for ; Sat, 1 Aug 2009 16:16:14 -0700 (PDT) Message-ID: <479702553.1249168574889.JavaMail.jira@brutus> Date: Sat, 1 Aug 2009 16:16:14 -0700 (PDT) From: "David Jencks (JIRA)" To: dev@geronimo.apache.org Subject: [jira] Commented: (GERONIMO-4779) Add cert authentication support for Jetty7 module In-Reply-To: <1161511825.1249009334928.JavaMail.jira@brutus> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 7bit X-JIRA-FingerPrint: 30527f35849b9dde25b450d4833f0394 X-Virus-Checked: Checked by ClamAV on apache.org [ https://issues.apache.org/jira/browse/GERONIMO-4779?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12737968#action_12737968 ] David Jencks commented on GERONIMO-4779: ---------------------------------------- I added the framework/modules/geronimo-security/src/main/java/org/apache/geronimo/security/realm/providers/PropertiesFileNoPasswordLoginModule.java login module in rev 799958 that should be able to accept the login call from the jetty client cert authenticator and add the appropriate principals. I haven't decided what if anything ought to be adding the credential to the subject. I'm inclined to think the authenticator should but that might only be because I don't want to add more login methods to the login service. Leaving open until we decide on how to do this. > Add cert authentication support for Jetty7 module > ------------------------------------------------- > > Key: GERONIMO-4779 > URL: https://issues.apache.org/jira/browse/GERONIMO-4779 > Project: Geronimo > Issue Type: Bug > Security Level: public(Regular issues) > Components: security > Affects Versions: 2.2 > Reporter: Ivan > Fix For: 2.2 > > > Current, jetty module does not support client-cert authentication -- This message is automatically generated by JIRA. - You can reply to this email to add a comment to the issue online.