Uploaded image for project: 'CXF'
  1. CXF
  2. CXF-4464

Support ClaimsHandler per realm

    XMLWordPrintableJSON

Details

    • New Feature
    • Status: Closed
    • Major
    • Resolution: Fixed
    • 2.6.1
    • 2.7.6, 3.0.0-milestone1
    • Services
    • None
    • Unknown

    Description

      A ClaimsHandler is independent of the STS realm.

      Example: The LdapClaimsHandler is configured to support the claims firstname and lastname. The principal (ws-sec header, onbehalfof, actas) is mapped to the STS realm. But you must use another principal to access the claims data from the LDAP directory. Thus a claimshandler must know which principal of which realm must be used to retrieve the claims.

      Therefore, the ClaimsHandler must provide the information in which realm he is applicable thus the ClaimsManager can map the identity before calling retrieveClaimValues.

      Attachments

        Issue Links

          Activity

            People

              owulff Oliver Wulff
              owulff Oliver Wulff
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: