Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Support SSL offloading #2

Open
bajnokk opened this issue Nov 25, 2016 · 0 comments
Open

Support SSL offloading #2

bajnokk opened this issue Nov 25, 2016 · 0 comments
Assignees

Comments

@bajnokk
Copy link
Contributor

bajnokk commented Nov 25, 2016

If the AA is deployed behind a load balancer, SSL client authentication might not be handled by the webserver running the AA but on an external host. In order to inject client certificate data (which is required to authorize the SP), an alternative header, such as X-SSL-CLIENT-CERT could be used.

This should be a configuration item, defaulting the current SSL_CLIENT_CERT value.

@szabogyula szabogyula self-assigned this Nov 28, 2016
szabogyula added a commit that referenced this issue Nov 28, 2016
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants