Uploaded image for project: 'JBoss Enterprise Application Platform'
  1. JBoss Enterprise Application Platform
  2. JBEAP-13626

Clarify authn for two-way SSL/TLS using the Elytron

XMLWordPrintable

      Book: How to Configure Server Security, rev 0f6b2d1634a42fa41fbbb90f5638251007fbc560:en-us
      Sections: 2.2.7. Enable Two-way SSL/TLS for the Management Interfaces Using the Elytron Subsystem and 2.4.2.2. Enable Two-way SSL/TLS for Applications Using the Elytron Subsystem

      Issue description:
      In the step 5 (or 9), there is stated: "You need to configure your client to present the trusted client certificate to the server to complete the two-way SSL/TLS authentication." Based on feedback from internal customer, the sentence is confusing because there is no authentication (to server management/application) based on the client certificate.

      Suggestions for improvement:

      • Clarify that the procedure results just in forced 2-way SSL/TLS and the original authentication method does not change (which is different against the legacy solution).
      • Add link to How to Configure Identity Management, section 2.5. Configure Authentication with Certificates.

              rhn-support-pnag Priyanka Nag
              okotek@redhat.com Ondrej Kotek
              Ondrej Kotek Ondrej Kotek
              Ondrej Kotek Ondrej Kotek
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: