From 8b88ef00331f1fbb28802b3eba5ced62daeffc9e Mon Sep 17 00:00:00 2001 From: Simo Sorce Date: Fri, 19 Aug 2016 09:23:55 -0400 Subject: Change session handling Stop using memcache, use mod_auth_gssapi filesystem based ccaches. Remove custom session handling, use mod_auth_gssapi and mod_session to establish and keep a session cookie. Add loopback to mod_auth_gssapi to do form absed auth and pass back a valid session cookie. And now that we do not remove ccaches files to move them to the memcache, we can avoid the risk of pollutting the filesystem by keeping a common ccache file for all instances of the same user. https://fedorahosted.org/freeipa/ticket/5959 Signed-off-by: Simo Sorce --- ipaplatform/base/paths.py | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) (limited to 'ipaplatform') diff --git a/ipaplatform/base/paths.py b/ipaplatform/base/paths.py index 423478917..44108e52a 100644 --- a/ipaplatform/base/paths.py +++ b/ipaplatform/base/paths.py @@ -328,8 +328,7 @@ class BasePathNamespace(object): KRB5CC_HTTPD = "/var/run/httpd/ipa/krbcache/krb5ccache" IPA_RENEWAL_LOCK = "/var/run/ipa/renewal.lock" SVC_LIST_FILE = "/var/run/ipa/services.list" - IPA_MEMCACHED_DIR = "/var/run/ipa_memcached" - VAR_RUN_IPA_MEMCACHED = "/var/run/ipa_memcached/ipa_memcached" + IPA_HTTPD_DIR = "/var/run/httpd" KRB5CC_SAMBA = "/var/run/samba/krb5cc_samba" SLAPD_INSTANCE_SOCKET_TEMPLATE = "/var/run/slapd-%s.socket" ALL_SLAPD_INSTANCE_SOCKETS = "/var/run/slapd-*.socket" -- cgit