[Freeipa-devel] [PATCH] Use Apache mod_proxy for auth

Karl MacMillan kmacmill at redhat.com
Tue Sep 11 18:27:09 UTC 2007


On Mon, 2007-09-10 at 16:49 -0400, Rob Crittenden wrote:
> * Enable mod_proxy to sit in front of TurboGears and pass along the 
> kerberos principal name
> * Add an identity an visit class to TurboGears that can handle the use 
> without requiring a database
> * Update the UI to show the user correctly.
> * Note that this is currently disabled. It is hardcoded to always return 
> the principal test at FREEIPA.ORG in proxyprovider.py. So this won't change 
> the way Kevin develops or demos.
> * It doesn't handle an unauthorized request because that can never happen.
> 
> I'm not 100% sure I got all the @identity() stuff set right in 
> controllers.py but it is a start.
> 

Pushed.

Karl




More information about the Freeipa-devel mailing list