diff options
author | Brice Figureau <brice-puppet@daysofwonder.com> | 2009-04-19 17:44:55 +0200 |
---|---|---|
committer | Brice Figureau <brice-puppet@daysofwonder.com> | 2009-04-23 20:52:04 +0200 |
commit | e623f8a32a7363d98843fdb361c717b6198d32de (patch) | |
tree | 76407989542ff83ab0238d144ade8975c60e373b /lib/puppet/reference/function.rb | |
parent | 037a4acfb6c9b498424e278caac88687e3f4cfa1 (diff) | |
download | puppet-e623f8a32a7363d98843fdb361c717b6198d32de.tar.gz puppet-e623f8a32a7363d98843fdb361c717b6198d32de.tar.xz puppet-e623f8a32a7363d98843fdb361c717b6198d32de.zip |
Unify auth/unauthenticated request authorization system
Before this change, unauthenticated REST requests where inconditionnaly
allowed, as long as they were to the certificate terminus.
This could be a security hole, so now the REST requests, authenticated
or unauthenticated are all submitted to the REST authorization
layer.
The default authorizations now contains directives to allow unauthenticated
requests to the various certificate terminus to allow new hosts.
The conf/auth.conf file has been modified to match such defaults.
Signed-off-by: Brice Figureau <brice-puppet@daysofwonder.com>
Diffstat (limited to 'lib/puppet/reference/function.rb')
0 files changed, 0 insertions, 0 deletions