Hello,

is it possible to have a x509 authentication which is verified through a crl 
and then search the x509 cn in a ldap store for a special attribute?
This attribute should accept or deny the authentication after the crl lookup 
was ok.

First step:
x509 certificate --> cn=user,ou=... --> CRL --> OK

Second step:
cn=user,ou=... (from x509) --> LDAP Store --> Logindisabled=true/false

If this attribute is true the login should be denied, otherwise it should be 
accepted.
-- 
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to