keystone/keystone/auth
chioleong efbc57e593 Tokenless authz with X.509 SSL client certificate
Implemented middleware to map an incoming trusted SSL client certificate
into Keystone auth credential so we can perform authorization without
having to issue a token.

TODO: to submit a separate patch to devstack to enable this feature.

Co-authored-by: guang-yee <guang.yee@hp.com>

SecurityImapct
DocImpact
implements bp keystone-tokenless-authz-with-x509-ssl-client-cert

Change-Id: Icc7305ca9d96f8e9cdc95ccde57de650801c6544
2015-09-02 15:10:31 -07:00
..
plugins Ensure ephemeral user's user_id is url-safe 2015-08-25 19:41:14 +00:00
__init__.py Safer noqa handling 2014-03-27 18:52:07 -05:00
controllers.py Tokenless authz with X.509 SSL client certificate 2015-09-02 15:10:31 -07:00
core.py Make sure all the auth plugins agree on the shared identity attributes. 2014-06-04 10:11:00 -05:00
routers.py remove invalid note 2014-12-31 19:04:14 +08:00