Uploaded image for project: 'CloudStack'
  1. CloudStack
  2. CLOUDSTACK-8457

Make SAML plugin production grade

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Major
    • Resolution: Fixed
    • None
    • 4.5.2, 4.6.0, Future
    • SAML
    • Security Level: Public (Anyone can view this level - this is the default.)
    • None

    Description

      The current SAML plugin is not well tested with major IdPs used in production such as Shibboleth. It is also limited to using HTTP-redirect only and does not support HTTP-Post and other artifacts. Further, the security concerns are not well addressed, for example both authorization, creation of users/accounts (on first login) and authentication is done by the plugin which needs to be tested wrt security, addressed and improved.

      Attachments

        Issue Links

          Activity

            People

              bhaisaab Rohit Yadav
              bhaisaab Rohit Yadav
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: