Re: [Architecture] WSO2 IS : what are the differences between OpenID Connect & OAuth 2.0 federated authenticators

2017-12-15 Thread Farasath Ahamed
On Friday, December 15, 2017, Youcef HILEM wrote: > Hi Hasanthi, > > Yes I know that the password grant is supported . > > My question is: can I use the password grant with our third party IDP OAuth > 2.0 [3] just integrated with [2]. No. We do not support password

Re: [Architecture] Gateway cache in APIM all in one active/active deployment without clustering

2017-12-15 Thread Sanjeewa Malalgoda
Yes we have to handle this case by case. If reaction time is important we have to bear the cost of having smaller cache duration. If performance is important we have to bear large reaction time. Thanks. sanjeewa. On Fri, Dec 15, 2017 at 4:33 PM, Susankha Nirmala wrote: > > >

Re: [Architecture] Gateway cache in APIM all in one active/active deployment without clustering

2017-12-15 Thread Susankha Nirmala
On Fri, Dec 15, 2017 at 3:56 PM, Pubudu Gunatilaka wrote: > Hi Susankha, > > On Fri, Dec 15, 2017 at 3:26 PM, Susankha Nirmala > wrote: > >> >> >> On Fri, Dec 15, 2017 at 3:14 PM, Pubudu Gunatilaka >> wrote: >> >>> Hi Susankha, >>> >>> We

Re: [Architecture] WSO2 IS : what are the differences between OpenID Connect & OAuth 2.0 federated authenticators

2017-12-15 Thread Youcef HILEM
Hi Hasanthi, Yes I know that the password grant is supported . My question is: can I use the password grant with our third party IDP OAuth 2.0 [3] just integrated with [2]. [1] Federated Authentication - https://docs.wso2.com/display/IS530/Federated+Authentication [2] Configuring

Re: [Architecture] Gateway cache in APIM all in one active/active deployment without clustering

2017-12-15 Thread Pubudu Gunatilaka
Hi Susankha, On Fri, Dec 15, 2017 at 3:26 PM, Susankha Nirmala wrote: > > > On Fri, Dec 15, 2017 at 3:14 PM, Pubudu Gunatilaka > wrote: > >> Hi Susankha, >> >> We have a guide which explains when to use hazelcast clustering in [1]. >> >> If you don't have

Re: [Architecture] Gateway cache in APIM all in one active/active deployment without clustering

2017-12-15 Thread Lakmal Warusawithana
On Fri, Dec 15, 2017 at 10:05 AM, Susankha Nirmala wrote: > > > On Fri, Dec 15, 2017 at 3:04 PM, Lakmal Warusawithana > wrote: > >> Hi Susanka, >> >> On Fri, Dec 15, 2017 at 9:18 AM, Susankha Nirmala >> wrote: >> >>> Hi All, >>> >>> When

Re: [Architecture] Gateway cache in APIM all in one active/active deployment without clustering

2017-12-15 Thread Susankha Nirmala
On Fri, Dec 15, 2017 at 3:04 PM, Lakmal Warusawithana wrote: > Hi Susanka, > > On Fri, Dec 15, 2017 at 9:18 AM, Susankha Nirmala > wrote: > >> Hi All, >> >> When we using APIM all in one active/active deployment pattern, by >> default gateway caching enabled

Re: [Architecture] Gateway cache in APIM all in one active/active deployment without clustering

2017-12-15 Thread Susankha Nirmala
On Fri, Dec 15, 2017 at 3:14 PM, Pubudu Gunatilaka wrote: > Hi Susankha, > > We have a guide which explains when to use hazelcast clustering in [1]. > > If you don't have clustering enabled, the following are expected. > > 1. Immediate revocation of tokens among the gateways >

Re: [Architecture] Gateway cache in APIM all in one active/active deployment without clustering

2017-12-15 Thread Pubudu Gunatilaka
Hi Susankha, We have a guide which explains when to use hazelcast clustering in [1]. If you don't have clustering enabled, the following are expected. 1. Immediate revocation of tokens among the gateways 2. Backend service throttling - The endpoint throttling limits and the spike arrest

Re: [Architecture] Gateway cache in APIM all in one active/active deployment without clustering

2017-12-15 Thread Lakmal Warusawithana
Hi Susanka, On Fri, Dec 15, 2017 at 9:18 AM, Susankha Nirmala wrote: > Hi All, > > When we using APIM all in one active/active deployment pattern, by default > gateway caching enabled and clustering disable according to the document > [1], Due to that > distributed caching is

Re: [Architecture] Secure MQTT Receiver for DAS

2017-12-15 Thread Sumedha Rubasinghe
There is an OAuth2 token based topic protector done for IoT scenarios. On Thu, Dec 14, 2017 at 5:25 PM, Kalaiyarasi Ganeshalingam < kalaiyar...@wso2.com> wrote: > Hi all, > > DAS already has MQTT Receiver but It is not enabled for secure MQTT > Communication. So, now I am going to work on this

Re: [Architecture] Secure MQTT Receiver for DAS

2017-12-15 Thread Dimuthu Leelarathne
Hi Kalai, I cannot think of a valid user story that would require a separate trust store. Others, WDYT? thanks, Dimuthu On Fri, Dec 15, 2017 at 2:59 PM, Kalaiyarasi Ganeshalingam < kalaiyar...@wso2.com> wrote: > hi Dimuthu, > > Yes,I'm going to use the existing trust store from the DAS's

Re: [Architecture] Secure MQTT Receiver for DAS

2017-12-15 Thread Kalaiyarasi Ganeshalingam
hi Dimuthu, Yes,I'm going to use the existing trust store from the DAS's carbon.xml as the default value. Regards, Kalaiyarasi Ganeshalingam Associate Software Engineer| WSO2 WSO2 Inc : http://wso2.org

[Architecture] Gateway cache in APIM all in one active/active deployment without clustering

2017-12-15 Thread Susankha Nirmala
Hi All, When we using APIM all in one active/active deployment pattern, by default gateway caching enabled and clustering disable according to the document [1], Due to that distributed caching is not use with this deployment pattern. With this deployment pattern, If we revoke a token, it will not

Re: [Architecture] WSO2 IS : what are the differences between OpenID Connect & OAuth 2.0 federated authenticators

2017-12-15 Thread Hasanthi Purnima Dissanayake
Hi Youcef, >From wso2 IS server and APIM we support for password Grant as well. If you can elaborate much on your use case may be I will able to help you with much details. [1] https://docs.wso2.com/display/IS530/Try+Password+Grant [2] https://docs.wso2.com/display/AM210/Password+Grant Thanks,

Re: [Architecture] [Dev] WSO2 Identity Server 5.4.0 Update1 Released !!!

2017-12-15 Thread Cyril Rognon
Hello Thank you for the good work ! Is there any prepackaged version of this release to use it as km for apim 2.1.0? Thanks Cyril Le 14 déc. 2017 6:03 PM, "Maduranga Siriwardena" a écrit : The WSO2 Identity and Access Management team is pleased to announce the release of