About Question enthuware.jwpv6.2.892 :

Moderator: admin

Post Reply
deadlock_gr
Posts: 54
Joined: Tue Apr 19, 2011 10:32 am
Contact:

About Question enthuware.jwpv6.2.892 :

Post by deadlock_gr »

Is the answer to this correct?

I think that the realm is independent of the login mechanism. It simply defines users, groups and group memberships.

admin
Site Admin
Posts: 10388
Joined: Fri Sep 10, 2010 9:26 pm
Contact:

Re: About Question enthuware.jwpv6.2.892 :

Post by admin »

Yes, it is correct because when you use the "basic" authentication mechanism, you are presented with a "realm" within which your credentials are relevant. This is as per http://www.ietf.org/rfc/rfc2617.txt

HTH,
Paul.

deadlock_gr
Posts: 54
Joined: Tue Apr 19, 2011 10:32 am
Contact:

Re: About Question enthuware.jwpv6.2.892 :

Post by deadlock_gr »

In the link you specify, it says:

"The realm directive (case-insensitive) is required for all authentication schemes that issue a challenge."

In other words, regardless the way you give your credentials (BASIC, Form etc), those credentials will be validated against a realm.

admin
Site Admin
Posts: 10388
Joined: Fri Sep 10, 2010 9:26 pm
Contact:

Re: About Question enthuware.jwpv6.2.892 :

Post by admin »

You are right. I misunderstood it. Thanks for pointing it out.
All except client-cert. Client-cert doesn't issue a challenge.

Post Reply

Who is online

Users browsing this forum: No registered users and 5 guests