[jboss-jira] [JBoss JIRA] (AS7-4646) Management Console needs to support FORM authentication

Jason Greene (JIRA) jira-events at lists.jboss.org
Fri Apr 27 13:14:17 EDT 2012


    [ https://issues.jboss.org/browse/AS7-4646?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=12688439#comment-12688439 ] 

Jason Greene commented on AS7-4646:
-----------------------------------

Jess is certainly right about FIPS. FIPS essentially whitelists all encryption algorithms an entire product is allowed to use. So hes right that md5 would fail.
                
> Management Console needs to support FORM authentication
> -------------------------------------------------------
>
>                 Key: AS7-4646
>                 URL: https://issues.jboss.org/browse/AS7-4646
>             Project: Application Server 7
>          Issue Type: Feature Request
>          Components: Console
>            Reporter: Jess Sightler
>            Assignee: Jason Greene
>              Labels: security
>
> Many clients have security requirements that disallow HTTP Basic authentication. HTTP Digest is also disallowed due to the requirement to store plaintext passwords on the server. HTTP Form based authentication would provide a much smoother experience for users and comply with client requirements.

--
This message is automatically generated by JIRA.
If you think it was sent incorrectly, please contact your JIRA administrators: https://issues.jboss.org/secure/ContactAdministrators!default.jspa
For more information on JIRA, see: http://www.atlassian.com/software/jira

        


More information about the jboss-jira mailing list