[jboss-jira] [JBoss JIRA] (JGRP-1729) Implement a SASL AuthToken

David Lloyd (JIRA) jira-events at lists.jboss.org
Tue Nov 5 11:43:02 EST 2013


    [ https://issues.jboss.org/browse/JGRP-1729?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12851052#comment-12851052 ] 

David Lloyd commented on JGRP-1729:
-----------------------------------

JBoss SASL isn't a SASL framework, it's just some improved and supplementary mechanisms for the existing JDK SASL APIs.
                
> Implement a SASL AuthToken
> --------------------------
>
>                 Key: JGRP-1729
>                 URL: https://issues.jboss.org/browse/JGRP-1729
>             Project: JGroups
>          Issue Type: Feature Request
>            Reporter: Tristan Tarrant
>            Assignee: Tristan Tarrant
>              Labels: security
>             Fix For: 3.5
>
>
> Implementing a SASL AuthToken will give us the ability to use whatever SASL mechs are offered by the underlying platform without introducing new dependencies. It would also replace many of the currently provided AuthToken implementations (MD5, X509, Krb5) with a more secure, flexible implementation (e.g. safe from replay attacks)

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators
For more information on JIRA, see: http://www.atlassian.com/software/jira


More information about the jboss-jira mailing list