Bug 1092744 (ovirt-aaa-sso)
| Summary: | [RFE][AAA] Introduce uniform login services | ||
|---|---|---|---|
| Product: | [oVirt] ovirt-engine | Reporter: | Alon Bar-Lev <alonbl> |
| Component: | RFEs | Assignee: | Ravi Nori <rnori> |
| Status: | CLOSED CURRENTRELEASE | QA Contact: | Gonza <grafuls> |
| Severity: | medium | Docs Contact: | |
| Priority: | medium | ||
| Version: | --- | CC: | bazulay, bugs, iheim, juwu, mgoldboi, movciari, oourfali, pstehlik, rbalakri, redhat, srevivo, trichard |
| Target Milestone: | ovirt-4.0.0-beta | Keywords: | FutureFeature, Improvement |
| Target Release: | 4.0.0 | Flags: | rule-engine:
ovirt-4.0.0+
grafuls: testing_plan_complete+ mgoldboi: planning_ack+ oourfali: devel_ack+ pstehlik: testing_ack+ |
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | Enhancement | |
| Doc Text: |
With this release, a single sign on module has been added that authenticates the user once, and allows access to both the Administration Portal and User Portal. Signing off from one portal closes the session on SSO and the user is logged out of all portals.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | 2016-08-01 12:29:22 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | Infra | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 956226, 975730, 1019921, 1164300, 1164302, 1285883, 1285885, 1285887 | ||
| Bug Blocks: | 1037844, 1104107, 1425415 | ||
|
Description
Alon Bar-Lev
2014-04-29 21:17:48 UTC
while the current SSO for VM isn't a great solution, we need to find a way to allow kerberos only to webadmin (and API), while allowing non kerberized login to user portal for the SSO to continue working. not sure if this RFE prevents this. (In reply to Itamar Heim from comment #1) > while the current SSO for VM isn't a great solution, we need to find a way > to allow kerberos only to webadmin (and API), while allowing non kerberized > login to user portal for the SSO to continue working. > not sure if this RFE prevents this. Are there plans to improve that to be supported in the spice level rather than via the engine? Or any other plans to make it in a better way? (In reply to Oved Ourfali from comment #2) > (In reply to Itamar Heim from comment #1) > > while the current SSO for VM isn't a great solution, we need to find a way > > to allow kerberos only to webadmin (and API), while allowing non kerberized > > login to user portal for the SSO to continue working. > > not sure if this RFE prevents this. > > Are there plans to improve that to be supported in the spice level rather > than via the engine? Or any other plans to make it in a better way? please discuss with michal and david blechter moving to 4.0, wasn't delivered feature freeze Target release should be placed once a package build is known to fix a issue. Since this bug is not modified, the target version has been reset. Please use target milestone to plan a fix for a oVirt release. This bug was accidentally moved from POST to MODIFIED via an error in automation, please see mmccune with any questions Moving from 4.0 alpha to 4.0 beta since 4.0 alpha has been already released and bug is not ON_QA. Verified with: rhevm-4.0.0.5-0.1.el7ev.noarch |