Re: Accepting all client certificates (FELIX-4797)

2015-03-17 Thread Reto Gmür
Hi Carsten, Ok, I guess 3. is maybe really overkill, especially as we would have to introduce an API package for the Jetty implementation (which we currently do not have). is actually it can be done in 5 lines of code: A minimalist

Re: Accepting all client certificates (FELIX-4797)

2015-03-06 Thread Carsten Ziegeler
Hi Pascal, Am 05.03.15 um 16:06 schrieb Pascal Mainini: I understand your point about the setting beeing dangerous (however I would expect someone configuring authentication with client certificates to be able to grasp the implications of it ;-) Yeah, that would be ideal :) We see the

Re: Accepting all client certificates (FELIX-4797)

2015-03-06 Thread Jan Willem Janssen
On 06 Mar 2015, at 11:41, Carsten Ziegeler cziege...@apache.org wrote: Am 05.03.15 um 16:06 schrieb Pascal Mainini: I understand your point about the setting beeing dangerous (however I would expect someone configuring authentication with client certificates to be able to grasp the

Re: Accepting all client certificates (FELIX-4797)

2015-03-05 Thread Carsten Ziegeler
Am 05.03.15 um 09:13 schrieb Pascal Mainini: Dear Felix-developers a few weeks ago, I have submitted a proposal for a patch[1] enabling the Felix HTTP/Jetty-service to accept any client certificate without doing further validation of it. The need for it arises in a project I am part of and