[31526] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Proxy authentication

daemon@ATHENA.MIT.EDU (Nigel Benns)
Fri Oct 2 12:49:09 2009

Message-ID: <357143.28213.qm@web88007.mail.re2.yahoo.com>
Date: Fri, 2 Oct 2009 09:48:41 -0700 (PDT)
From: Nigel Benns <nigelbenns@rogers.com>
To: kerberos@mit.edu
In-Reply-To: <252762.13008.qm@web88006.mail.re2.yahoo.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="iso-8859-1"
Errors-To: kerberos-bounces@mit.edu
Content-Transfer-Encoding: 8bit

I would like to add, I don't really care if I use proxying or forwarding, as long as it works.

--- On Fri, 10/2/09, Nigel Benns <nigelbenns@rogers.com> wrote:

From: Nigel Benns <nigelbenns@rogers.com>
Subject: Proxy authentication
To: kerberos@mit.edu
Received: Friday, October 2, 2009, 10:17 AM

Hi,  I'm trying to get mod_auth_kerb to proxy the HTTP service ticket to a weblogic installation.

Both Apache and Weblogic can already authenticate via kerberos on their own, I just need to be able to get the HTTP ticket for weblogic on the apache/mod_auth_kerb server.

I have been trying to get this to work for a while now and am getting frustrated with it.

I am using Solaris 10 for both the apache server and weblogic server.  Weblogic version is 10.1.
We are using Windows 2003 AD for the KDC and I have given the apache server's service account delegation ability to the weblogic servers HTTP service principal.

Anyone have any ideas about how to get this to work?

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos


home help back first fref pref prev next nref lref last post