-
Bug
-
Resolution: Done
-
Critical
-
7.1.0.CR3
Book: How to Configure Server Security, rev 0f6b2d1634a42fa41fbbb90f5638251007fbc560:en-us
Sections: 2.2.7. Enable Two-way SSL/TLS for the Management Interfaces Using the Elytron Subsystem and 2.4.2.2. Enable Two-way SSL/TLS for Applications Using the Elytron Subsystem
Issue description:
In the step 5 (or 9), there is stated: "You need to configure your client to present the trusted client certificate to the server to complete the two-way SSL/TLS authentication." Based on feedback from internal customer, the sentence is confusing because there is no authentication (to server management/application) based on the client certificate.
Suggestions for improvement:
- Clarify that the procedure results just in forced 2-way SSL/TLS and the original authentication method does not change (which is different against the legacy solution).
- Add link to How to Configure Identity Management, section 2.5. Configure Authentication with Certificates.