Uploaded image for project: 'JBoss Enterprise Application Platform'
  1. JBoss Enterprise Application Platform
  2. JBEAP-13626

Clarify authn for two-way SSL/TLS using the Elytron

    XMLWordPrintable

Description

    Book: How to Configure Server Security, rev 0f6b2d1634a42fa41fbbb90f5638251007fbc560:en-us
    Sections: 2.2.7. Enable Two-way SSL/TLS for the Management Interfaces Using the Elytron Subsystem and 2.4.2.2. Enable Two-way SSL/TLS for Applications Using the Elytron Subsystem

    Issue description:
    In the step 5 (or 9), there is stated: "You need to configure your client to present the trusted client certificate to the server to complete the two-way SSL/TLS authentication." Based on feedback from internal customer, the sentence is confusing because there is no authentication (to server management/application) based on the client certificate.

    Suggestions for improvement:

    • Clarify that the procedure results just in forced 2-way SSL/TLS and the original authentication method does not change (which is different against the legacy solution).
    • Add link to How to Configure Identity Management, section 2.5. Configure Authentication with Certificates.

    Attachments

      Activity

        People

          rhn-support-pnag Priyanka Pandey
          okotek@redhat.com Ondrej Kotek
          Ondrej Kotek Ondrej Kotek
          Ondrej Kotek Ondrej Kotek
          Votes:
          0 Vote for this issue
          Watchers:
          4 Start watching this issue

          Dates

            Created:
            Updated:
            Resolved: