Bug 794030 (JBEPP-1099)

Summary: Fallback to FORM authentication if SPNEGO not available or fails on EPP
Product: [JBoss] JBoss Enterprise Portal Platform 5 Reporter: Gary Hu <garyhu2>
Component: PortalAssignee: mposolda
Status: CLOSED NEXTRELEASE QA Contact:
Severity: high Docs Contact:
Priority: high    
Version: unspecifiedCC: garyhu2, mposolda
Target Milestone: ---   
Target Release: 5.2.0.ER06   
Hardware: Unspecified   
OS: Unspecified   
URL: http://jira.jboss.org/jira/browse/JBEPP-1099
Whiteboard:
Fixed In Version: Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2011-11-03 21:48:02 UTC Type: Feature Request
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:

Description Gary Hu 2011-08-19 19:15:22 UTC
Help Desk Ticket Reference: https://na7.salesforce.com/500A0000007r0w0
project_key: JBEPP

Can we integrate the feature in https://issues.jboss.org/browse/SECURITY-141 with EPP 5?

The fix in SECURITY-141 involves JBoss Negotiation and JBossWeb. Can we do something similar at the EPP layer?

Comment 2 mposolda 2011-11-01 15:03:03 UTC
Link: Added: This issue is related to SECURITY-630


Comment 3 mposolda 2011-11-01 21:10:06 UTC
Link: Added: This issue is related to GTNPORTAL-2251


Comment 5 mposolda 2011-11-03 21:48:02 UTC
Release Notes Text: Added: Fixed in SSO component, so that SPNEGO can be configured to support fallback to FORM authentication . Aka. in case that user don't have Kerberos ticket, normal EPP login screen is shown to him and he can authenticate with his username and password.


Comment 6 mposolda 2011-11-03 21:50:03 UTC
Currently it's working with SSO trunk (rev. 7960) and latest documentation is available in README.txt in GTNPORTAL-2251. It requires upgrade of JBoss Negotiation library to version 2.0.4.GA (Default version packed with EPP is 2.0.3.SP1)

Comment 7 mposolda 2011-11-03 21:53:04 UTC
Link: Added: This issue is related to JBEPP-1341


Comment 8 Thomas Heute 2011-11-17 14:37:21 UTC
Release Notes Docs Status: Added: Not Yet Documented


Comment 9 Jared MORGAN 2011-11-28 03:16:54 UTC
Release Notes Docs Status: Removed: Not Yet Documented Added: Documented as Feature Request
Release Notes Text: Removed: Fixed in SSO component, so that SPNEGO can be configured to support fallback to FORM authentication . Aka. in case that user don't have Kerberos ticket, normal EPP login screen is shown to him and he can authenticate with his username and password. Added: In this release, the Single Sign On (SSO) component has been enhanced to support FORM authentication for instances where the user can not get access to SSO authentication sessions (such as a Kerberos ticket). Users can now authenticate manually with the portal-specific username and password as a fall-back.
Primary SME: Added: theute