Bug 1113937
Summary: | [RFE][AAA] Single sign-on into web applications | ||
---|---|---|---|
Product: | Red Hat Enterprise Virtualization Manager | Reporter: | Alon Bar-Lev <alonbl> |
Component: | RFEs | Assignee: | Alon Bar-Lev <alonbl> |
Status: | CLOSED ERRATA | QA Contact: | Ondra Machacek <omachace> |
Severity: | unspecified | Docs Contact: | |
Priority: | unspecified | ||
Version: | unspecified | CC: | anande, audgiri, bazulay, dminnich, gklein, iheim, juwu, lmiccini, lpeer, oourfali, pablo.iranzo, pspacek, pstehlik, rbalakri, sherold, sigbjorn, yeylon |
Target Milestone: | --- | Keywords: | FutureFeature, TechPreview |
Target Release: | 3.5.0 | ||
Hardware: | Unspecified | ||
OS: | Unspecified | ||
Whiteboard: | infra | ||
Fixed In Version: | vt2.2 | Doc Type: | Technology Preview |
Doc Text: |
With this update, the engine can now integrate with Apache authentication, for example mod_auth_kerb, to accept users already authenticated by Apache and enable single sign-on to the User and Administration Portals.
Note that this feature conflicts with the password delegation feature in 3.4 (also known as the single sign-on to virtual machine feature) as the engine does not have access to user passwords anymore, the password cannot be delegated to virtual machines.
Also note that when this feature is used, the sign out button in the User Portal and Administration Portal will not work. The user will remain logged in even after clicking the sign out button. To sign out, the user needs to sign out from the single sign-on provider.
For more information on configuring this feature, see the ovirt-engine-extension-aaa-ldap package documentation[1].
[1] http://gerrit.ovirt.org/gitweb?p=ovirt-engine-extension-aaa-ldap.git;a=blob;f=README;hb=HEAD#l141
|
Story Points: | --- |
Clone Of: | Environment: | ||
Last Closed: | 2015-02-11 18:04:19 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | Infra | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 570191, 884653, 1112404, 1125224, 1161734 | ||
Bug Blocks: | 1076964, 1121762, 1142923, 1156165 |
Description
Alon Bar-Lev
2014-06-27 09:38:19 UTC
Core limitation: SSO into virtual machine will not work, as password is unknown to engine. *** Bug 1125224 has been marked as a duplicate of this bug. *** *** Bug 1170209 has been marked as a duplicate of this bug. *** Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://rhn.redhat.com/errata/RHSA-2015-0158.html |