./security/pam-saml, Crude SAML assertion validator for bridging WebSSO and PAM

[ CVSweb ] [ Homepage ] [ RSS ] [ Required by ] [ Add to tracker ]


Branch: pkgsrc-2012Q1, Version: 1.2nb3, Package name: pam-saml-1.2nb3, Maintainer: manu

PAM provides a way to develop programs that are independent of
authentication scheme. These programs need "authentication modules" to be
attached to them at run-time in order to work. Which authentication module
is to be attached is dependent upon the local system setup and is at the
discretion of the local system administrator.

This package contains a PAM module that perform a crude
check on a SAML authentication assertion. The assertion signature and date
are verified, and access is granted on behalf ot the user taked for a
onfigurable attribute.

The only protection against replay attacks is the assertion validity dates
checks, this authentication is therefore secure only if the SAML
authentication assertion remains secret. The assertion has the same role
as a web cookie used for authentication.


Required to run:
[security/lasso]

Master sites:

SHA1: f0d917559b6e98e911066c59c1ffd879d97b5d46
RMD160: f6c23b7d955cb6397b567899a80351795655b630
Filesize: 277.927 KB

Version history: (Expand)