DoD CAC and Apache

Came across this little blog post about apache config with DoD CAC.

techmiso.com

Worked like a champ for me with Apache2.2 and Solaris 10 X86. Now onto to user authentication and access control with this configuration.

VN:F [1.9.3_1094]
Rating: 0.0/10 (0 votes cast)
VN:F [1.9.3_1094]
Rating: 0 (from 0 votes)
This entry was posted in News, puters. Bookmark the permalink.

2 Responses to DoD CAC and Apache

  1. Mario says:

    Hi Have you figured out how to do user authentication with the above configuration?

    VA:F [1.9.3_1094]
    Rating: 0.0/5 (0 votes cast)
    VA:F [1.9.3_1094]
    Rating: 0 (from 0 votes)
  2. matt says:

    I am working on a new post with CRL’s. This handles making sure only valid certs are allowed in. Then it is up the applications to handle the authorization. One option is use opensso, there are a few sun.com blogs I have found talking about it.

    The trick is merging the SSL_CLIENT_S_DN_CN(unique to everyone) in a friendly name. For me this would have to be across applications if there isn’t an identity server running for everyone. Backend services can be written to supply common data at application registration.

    Either way you would have to reach back to an Enterprise service to get “Official” information.

    VN:F [1.9.3_1094]
    Rating: 0.0/5 (0 votes cast)
    VN:F [1.9.3_1094]
    Rating: 0 (from 0 votes)

Leave a Reply

Your email address will not be published. Required fields are marked *

*

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>