Java Mailing List Archive

http://www.junlu.com/

Google
Google
Mailing List
Home
Forum Home
JBoss - Java Application Server
Tomcat - JSP/Servlet container
Struts - A MVC web framework
iText - An open source PDF Java Library
JDOM - JDOM XML Parser
J2EE - A mailing list for Java(tm) 2 Platform, Enterprise Edition
JSP - A mailing list about Java Server Pages specification and reference
J2EE Pattern - An interest list for Sun Java Center J2EE Pattern Catalog
Servlet - A mailing list for discussion about Sun Microsystem's Java Servlet API Technology
Struts & Hibernate
Subjects
JSP editor plugin for eclipse ?
org apache jasper JasperException: Unable to compile class for JSP
Tomcat: Connection reset by peer: socket write error
Cannot retrieve definition for form bean null
Struts Tiles Tutorial (free Struts training)
Where do I download Tomcat 4 0 6?
Data Access Object (DAO) pattern, example DAO 's
Where to download Tomcat v 4 1 24 from?
Tomcat 5 0 16 Requested resource not available
Oracle Connection Pooling in 3 2 2
Servlet : Session invalidate
Servlet action is currently unavailable
Tomcat/Struts Unicode Encoding/Decoding problems
Tomcat and webapplication specific java library path
Running a Simple JMS Example
Mapping in workers2 properties
org apache jasper JasperException
Cannot find message resources under key org apache struts action
   MESSAGE
problem with html:text bean throwing exception
Cannot find message resources under key org apache struts action MESSAGE
invalid direct reference problem with solution
Tool for jsp debug Try Sysdeo Eclipse Plugin
Tomcat 5 Cannot load JDBC driver class 'null ' SQL state: null
weblogic ejbc
java properties file
Jboss 3 2 3 Coyote Can 't re
Tomcat 5, Apache2 and mod jk2 integration problem
JBoss example problem new to J2EE
url string for connecting jboss to oracle
Value attribute of <html:checkbox
javax servlet ServletException: BeanUtils populate
HTTP Status 404 The requested resource is not available
5 0 18: Windows XP Pro vs Windows 2000
 
Filter with "HTTP Negotiate "/SPNEGO/Kerberos against Active Directory with LDAP

Filter with "HTTP Negotiate "/SPNEGO/Kerberos against Active Directory with LDAP

2006-12-15       - By Morten Mortensen

 Back

Regarding "HTTP Negotiate",

- I am on the lookout for people interested in SSO from a browser to
Tomcat and against a Windows Domain Controller/Active Directory through
LDAP with the purpose of creating a stand-alone servlet filter.

Configuration on network:
 1) Active Directory (Windows Domain Controller) accessible through
LDAP on network #1.
 2) Client browsers (IE, Firefox) on Windows machines on network #1
logged in to the domain controller in 1).
 3) Web application running on Tomcat on network #2 with only i) HTTP
access from network #1->#2 and with ii) LDAP access from network #2->#1.

Until now, I have been unable to find any simple, open source
implementations of such a filter. I have noticed the old jCIFS-Ext work
on SourceForge, the improvements made by the Jboss project and the
inclusion of SPNEGO in the new Java 6 JSE.

Until now, I can make my browser activate a "HTTP Negotiate" with the
mechanisms Microsoft Kerberos 5/Kerberos 5/NTLM and handle the headers
themselves in a prototype servlet filter on my 3) Tomcat server.

I am also able to access the Active Directory in 1) through LDAP and the
GSS-API using Kerberos - with a standalone test-program and of course
written in Java.

I am not interested in NTLM SSO and no valves. I am interested in a
standalone filter handling SSO by using HTTP Negotiate with
SPNEGO+Kerberos and verifying tickets by LDAP handshake. With source
code, that is. My target is Java 6 + Tomcat 5.5+.

Has anyone done this? Where to find this filter?

Regards
Morten Sabroe Mortensen

-- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ---- ------
To start a new topic, e-mail: users@(protected)
To unsubscribe, e-mail: users-unsubscribe@(protected)
For additional commands, e-mail: users-help@(protected)


©2008 junlu.com - Jax Systems, LLC, U.S.A.