diff options
author | Martin Babinsky <mbabinsk@redhat.com> | 2016-09-22 09:58:47 +0200 |
---|---|---|
committer | David Kupka <dkupka@redhat.com> | 2017-03-08 15:56:11 +0100 |
commit | f8d7e37a091c1df4c989b80b8d19e12ab35533c8 (patch) | |
tree | 5c235727b3ba8c8d5e4901f91648f0866cce68b5 /install/share/csrgen/templates/openssl_base.tmpl | |
parent | 1e912f5b83166154806e0382f3f028d0eac81731 (diff) | |
download | freeipa-f8d7e37a091c1df4c989b80b8d19e12ab35533c8.tar.gz freeipa-f8d7e37a091c1df4c989b80b8d19e12ab35533c8.tar.xz freeipa-f8d7e37a091c1df4c989b80b8d19e12ab35533c8.zip |
Allow login to WebUI using Kerberos aliases/enterprise principals
The logic of the extraction/validation of principal from the request and
subsequent authentication was simplified and most of the guesswork will
be done by KDC during kinit. This also allows principals from trusted
domains to login via rpcserver.
https://fedorahosted.org/freeipa/ticket/6343
Reviewed-By: Alexander Bokovoy <abokovoy@redhat.com>
Reviewed-By: Simo Sorce <ssorce@redhat.com>
Reviewed-By: David Kupka <dkupka@redhat.com>
Diffstat (limited to 'install/share/csrgen/templates/openssl_base.tmpl')
0 files changed, 0 insertions, 0 deletions