Red Hat Bugzilla – Bug 858550
RHEVM_SDK: Document session based authentication
Last modified: 2014-03-25 03:02:05 EDT
See "#740756 - (stateful_auth_rest) PRD31 - Implement session based authentication for the RESTful API" for more details
Deferring rectification of the issue I raise in comment # 1 for consideration in future release scoping.
Re-opened for 3.2.0 scoping, flags will follow.
Change made as suggested.
Have added the following to 'persistent_auth':
"This parameter is optional and defaults to False. "
Change can be viewed here:
i have tiny comment on this section:
insecure - Specifies whether or not the connection needs to be secured. Valid values are True and False. If the insecure parameter is set to False - which is the default - then the ca_file, key_file, and cert_file must be supplied to secure the connection.
=> if insecure=False, only ca_file is mandatory, key_file/cert_file are still optional,
also the meaning of insecure flag is "do not throw error when SSL and no ca_file" is provided.
Changes made as suggested. I also added a para about man-in-the-middle attacks for 'insecure'.
Changes can be viewed at: