On 8/27/13, Feuermurmel <[email protected]> wrote:
> On Monday, August 26, 2013 6:16:45 PM UTC+2, olemis wrote:
>>
>>   - Digest auth is enabled , what about anonymous access ?
>>     * If there's anonymous access to /login/... is forbidden then you'll
>>       get expeted HTTP error status .
>>
>
> Is it possible that the authentication work needs to be done by the HTTP
> server for XmlRpcPlugin to work?
>
[...]

Yes , of course . When account manager is deployed somehow you have to
specify that RPC requests will have to be touched by some digest auth
handler . That could be one of

  - Server digest auth module ...
  - trachacks:HttpAuthPlugin

Indeed I usually set the match for "^/login/.*" but that's up to you
to decide ...

> I've now tried to set up lighttpd to do
> digest authentication for any URL that matches "^/login/xmlrpc" and it
> seems to work. Both curl and using Requests for Python I was able to make a
> successful XMLRPC request.
[...]

\o/

-- 
Regards,

Olemis - @olemislc

Apacheā„¢ Bloodhound contributor
http://issues.apache.org/bloodhound
http://blood-hound.net

Blog ES: http://simelo-es.blogspot.com/
Blog EN: http://simelo-en.blogspot.com/

Featured article:

-- 
You received this message because you are subscribed to the Google Groups "Trac 
Users" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To post to this group, send email to [email protected].
Visit this group at http://groups.google.com/group/trac-users.
For more options, visit https://groups.google.com/groups/opt_out.

Reply via email to