diff options
| author | Simo Sorce <simo@redhat.com> | 2016-08-19 09:23:55 -0400 |
|---|---|---|
| committer | Simo Sorce <simo@redhat.com> | 2017-02-14 17:36:04 -0500 |
| commit | 8b88ef00331f1fbb28802b3eba5ced62daeffc9e (patch) | |
| tree | 3236bbad94a1ada157e62070960948e9e5a0b08f /ipaplatform | |
| parent | 8d3bea8accb9814b3a973f4a606110fee78baf72 (diff) | |
| download | freeipa-8b88ef00331f1fbb28802b3eba5ced62daeffc9e.tar.gz freeipa-8b88ef00331f1fbb28802b3eba5ced62daeffc9e.tar.xz freeipa-8b88ef00331f1fbb28802b3eba5ced62daeffc9e.zip | |
Change session handling
Stop using memcache, use mod_auth_gssapi filesystem based ccaches.
Remove custom session handling, use mod_auth_gssapi and mod_session to
establish and keep a session cookie.
Add loopback to mod_auth_gssapi to do form absed auth and pass back a
valid session cookie.
And now that we do not remove ccaches files to move them to the
memcache, we can avoid the risk of pollutting the filesystem by keeping
a common ccache file for all instances of the same user.
https://fedorahosted.org/freeipa/ticket/5959
Signed-off-by: Simo Sorce <simo@redhat.com>
Diffstat (limited to 'ipaplatform')
| -rw-r--r-- | ipaplatform/base/paths.py | 3 |
1 files changed, 1 insertions, 2 deletions
diff --git a/ipaplatform/base/paths.py b/ipaplatform/base/paths.py index 423478917..44108e52a 100644 --- a/ipaplatform/base/paths.py +++ b/ipaplatform/base/paths.py @@ -328,8 +328,7 @@ class BasePathNamespace(object): KRB5CC_HTTPD = "/var/run/httpd/ipa/krbcache/krb5ccache" IPA_RENEWAL_LOCK = "/var/run/ipa/renewal.lock" SVC_LIST_FILE = "/var/run/ipa/services.list" - IPA_MEMCACHED_DIR = "/var/run/ipa_memcached" - VAR_RUN_IPA_MEMCACHED = "/var/run/ipa_memcached/ipa_memcached" + IPA_HTTPD_DIR = "/var/run/httpd" KRB5CC_SAMBA = "/var/run/samba/krb5cc_samba" SLAPD_INSTANCE_SOCKET_TEMPLATE = "/var/run/slapd-%s.socket" ALL_SLAPD_INSTANCE_SOCKETS = "/var/run/slapd-*.socket" |
