<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: RESTApp : Token validation instead of BASIC AUTH in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132718#M93215</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;True. We do have an Identity provider server and we are given an API to call it(to obtain, exchange &amp;amp; validate tokens). I am not a SAML expert either. Perhaps we need a&amp;nbsp; few methods(to exchange &amp;amp; validate tokens)in UserEntityManager for developers to override.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 10 Apr 2013 17:06:06 GMT</pubDate>
    <dc:creator>rangoo</dc:creator>
    <dc:date>2013-04-10T17:06:06Z</dc:date>
    <item>
      <title>RESTApp : Token validation instead of BASIC AUTH</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132713#M93210</link>
      <description>I am planning to use the Activiti REST app with a Token instead of basic authentication. I extended UserEntityManager to overide&amp;nbsp; checkPassword(String userId, String password)‍I will receive a SAML Token instead of username/password from my REST Clients. so I will have to pass - UserID as null and a</description>
      <pubDate>Mon, 08 Apr 2013 22:37:38 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132713#M93210</guid>
      <dc:creator>rangoo</dc:creator>
      <dc:date>2013-04-08T22:37:38Z</dc:date>
    </item>
    <item>
      <title>Re: RESTApp : Token validation instead of BASIC AUTH</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132714#M93211</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hi,&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;What do you use to validate the SAML token?&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Adding a token-based authentication/authorization mechanism to Activiti would be an interesting improvement.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Therefore it would be good to know which SAML implementation you are using.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Best regards,&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Apr 2013 13:58:15 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132714#M93211</guid>
      <dc:creator>trademak</dc:creator>
      <dc:date>2013-04-09T13:58:15Z</dc:date>
    </item>
    <item>
      <title>Re: RESTApp : Token validation instead of BASIC AUTH</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132715#M93212</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Yes Indeed.&amp;nbsp; We chose Activiti over a commercial product so we can customize our security. We are using SAML 2.0.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Apr 2013 16:10:28 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132715#M93212</guid>
      <dc:creator>rangoo</dc:creator>
      <dc:date>2013-04-09T16:10:28Z</dc:date>
    </item>
    <item>
      <title>Re: RESTApp : Token validation instead of BASIC AUTH</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132716#M93213</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Wouldn't that required an identity provider server whenever you want to use it (my SAML is rusty)?&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;How easy could this be made pluggable?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;But yes: saml authentication is something that would be very interesting to have!&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Apr 2013 14:25:00 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132716#M93213</guid>
      <dc:creator>jbarrez</dc:creator>
      <dc:date>2013-04-10T14:25:00Z</dc:date>
    </item>
    <item>
      <title>Re: RESTApp : Token validation instead of BASIC AUTH</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132717#M93214</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;1: yes, an idp is needed&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;2: pluggable in what way? Different implementations in Activiti?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Apr 2013 16:51:58 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132717#M93214</guid>
      <dc:creator>ronald_van_kuij</dc:creator>
      <dc:date>2013-04-10T16:51:58Z</dc:date>
    </item>
    <item>
      <title>Re: RESTApp : Token validation instead of BASIC AUTH</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132718#M93215</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;True. We do have an Identity provider server and we are given an API to call it(to obtain, exchange &amp;amp; validate tokens). I am not a SAML expert either. Perhaps we need a&amp;nbsp; few methods(to exchange &amp;amp; validate tokens)in UserEntityManager for developers to override.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Apr 2013 17:06:06 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132718#M93215</guid>
      <dc:creator>rangoo</dc:creator>
      <dc:date>2013-04-10T17:06:06Z</dc:date>
    </item>
    <item>
      <title>Re: RESTApp : Token validation instead of BASIC AUTH</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132719#M93216</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;@Ronald and @ rangoo: pluggable in the way that people would specifically be able to turn it on.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I don't know how widespread SAML is these das (I did a consultancy gig 5 years ago on it, and back then it was mostly academical instituations),&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;but it is something that is probably wanted by some people (but i dont have the knowledge anymore)&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 11 Apr 2013 09:27:11 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/restapp-token-validation-instead-of-basic-auth/m-p/132719#M93216</guid>
      <dc:creator>jbarrez</dc:creator>
      <dc:date>2013-04-11T09:27:11Z</dc:date>
    </item>
  </channel>
</rss>

