[midPoint] REST authentication

Radovan Semancik radovan.semancik at evolveum.com
Thu Dec 8 15:34:44 CET 2016


Hi Adam,

Now, this is subscriber talking. So we have to listen. Do you have any 
plan how would you like to authenticate with your application? I think 
that using OAuth2 is currently a common practice. If that approach is 
suitable for you I would prefer that solution. But if you need something 
simpler we can do that instead. I think this can still fit into midPoint 
3.6 development plan.

-- 
Radovan Semancik
Software Architect
evolveum.com



On 12/08/2016 03:20 PM, Adam Davenport wrote:
> We also have a requirement to call the midPoint API on behalf of a particular user.  Not only for the delegated administration mechanisms but also for auditing.  We plan on having a home grown application that users will use that calls the midPoint API.  We require midPoint to audit that userX performed an action on userY rather than the audit record indicating "application user" performed the action.  However, storing userX's credentials to send in the API calls is not a feasible practice.  Thank you.
>
> Adam Davenport
> Western University
> _______________________________________________
> midPoint mailing list
> midPoint at lists.evolveum.com
> http://lists.evolveum.com/mailman/listinfo/midpoint





More information about the midPoint mailing list