<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Authentication via client certificate in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/authentication-via-client-certificate/m-p/303618#M256748</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;We've done something similar by extending SSO mechanism and passing username to SSOAuthenticationFilter.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;It would be a way to accomplish your development.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 24 Sep 2014 08:58:23 GMT</pubDate>
    <dc:creator>angelborroy</dc:creator>
    <dc:date>2014-09-24T08:58:23Z</dc:date>
    <item>
      <title>Authentication via client certificate</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/authentication-via-client-certificate/m-p/303617#M256747</link>
      <description>Hello,we have a requirement that the users should be able to authenticate using&amp;nbsp; client certificates. Users only have access to Share application.To accomplish this, so far, we have done the following customizations/extensions:1. A custom share page is defined, with authentication set to none, in or</description>
      <pubDate>Wed, 24 Sep 2014 08:28:57 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/authentication-via-client-certificate/m-p/303617#M256747</guid>
      <dc:creator>aleksandarm</dc:creator>
      <dc:date>2014-09-24T08:28:57Z</dc:date>
    </item>
    <item>
      <title>Re: Authentication via client certificate</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/authentication-via-client-certificate/m-p/303618#M256748</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;We've done something similar by extending SSO mechanism and passing username to SSOAuthenticationFilter.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;It would be a way to accomplish your development.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 24 Sep 2014 08:58:23 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/authentication-via-client-certificate/m-p/303618#M256748</guid>
      <dc:creator>angelborroy</dc:creator>
      <dc:date>2014-09-24T08:58:23Z</dc:date>
    </item>
    <item>
      <title>Re: Authentication via client certificate</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/authentication-via-client-certificate/m-p/303619#M256749</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Thanks for the reply,&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;I'l follow your suggestion and look into this mechanism.&lt;/SPAN&gt;&lt;BR /&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 25 Sep 2014 14:20:17 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/authentication-via-client-certificate/m-p/303619#M256749</guid>
      <dc:creator>aleksandarm</dc:creator>
      <dc:date>2014-09-25T14:20:17Z</dc:date>
    </item>
    <item>
      <title>Re: Authentication via client certificate</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/authentication-via-client-certificate/m-p/303620#M256750</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Angel Borroy, thanks again for your suggestion, it was very useful&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;In case that someone ever find it useful, we ended up doing the following:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;5. Custom share filter is defined, which adds HttpRequest header containing user name extracted from certificate,&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp; and passes it further down the filter chain. In a way, this filter within share appliication acts like an external &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp; authentication system&amp;nbsp; &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;6. External authentication is configured on the repo, and the way how Share passes authentication &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp; information to the Repo is customized according to&amp;nbsp; &lt;/SPAN&gt;&lt;A href="https://devcon.alfresco.com/sanjose/sessions/unlocking-secrets-alfresco-authentication" rel="nofollow noopener noreferrer"&gt;https://devcon.alfresco.com/sanjose/sessions/unlocking-secrets-alfresco-authentication&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 02 Oct 2014 11:30:23 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/authentication-via-client-certificate/m-p/303620#M256750</guid>
      <dc:creator>aleksandarm</dc:creator>
      <dc:date>2014-10-02T11:30:23Z</dc:date>
    </item>
  </channel>
</rss>

