httpd-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Eric Covener <>
Subject Re: X.509 client certificates and LDAP authorization
Date Tue, 08 Sep 2009 17:05:10 GMT
On Tue, Sep 8, 2009 at 11:01 AM, Udo Rader<> wrote:
> Typically, certificate based authentication needs to be "supported" by LDAP,
> the latter translating the certificate subjects into "real" usernames,
> useable by external applications via REMOTE_USER.

A change to mod_ssl to allow SSLUserName-like behavior with
FakeBasicAuth mostly solves this.  I prefer this to pulling the
information in the specific authz provider.

Eric Covener

View raw message