version 1.1.2.15, 2007/01/12 07:16:04
|
version 1.1.2.16, 2007/01/12 07:36:17
|
|
|
14. The KerberosAuthenticationHandler.h and all Kerberos authentication | 14. The KerberosAuthenticationHandler.h and all Kerberos authentication |
logic is not part of the Pegasus repository. | logic is not part of the Pegasus repository. |
| |
15. The CIMExportIndicationRequestMessage comes back into the server |
15. The following authentication schemes were rewritten and are now |
and is delivered to an indication consumer (which must be loaded). |
|
|
|
16. The following authentication schemes were rewritten and are now |
|
part of the executor. | part of the executor. |
| |
- PAM Basic Authentication | - PAM Basic Authentication |
|
|
- SSL peer authentication | - SSL peer authentication |
- Kerberos (source not available to Pegasus). | - Kerberos (source not available to Pegasus). |
| |
17. Places that NEW_SESSION_KEY request is used. |
16. Places that NEW_SESSION_KEY request is used. |
| |
- SSL certificate authentication. | - SSL certificate authentication. |
- Indication service. |
- Indication service (before accepting connections). |
| |
18. Note that "secure basic" authentication and "SSL peer authentication" |
17. Note that using "secure basic" authentication and "SSL peer |
cannot be used together since the validate user (performed by |
authentication" togehter breaks the end-to-end tests (validate |
SSL peer authentication) fails since the username is not in the |
user fails since the user is not in the cimserver.passwd file). |
cimserver.passwd file. |
|
|
18. Four provider agent user contexts: |
|
|
|
- REQUESTOR MyProviderModule:* |
|
- DESIGNATED MyProviderModule:fred |
|
- PRIVILEGED MyProviderModule:root |
|
- CIMSERVER MyProviderModule:pegasus |