juddi-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Alex O'Ree (JIRA)" <juddi-...@ws.apache.org>
Subject [jira] [Assigned] (JUDDI-686) track and map requestors IP address to auth token
Date Tue, 05 Nov 2013 03:21:22 GMT

     [ https://issues.apache.org/jira/browse/JUDDI-686?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel

Alex O'Ree reassigned JUDDI-686:

    Assignee: Alex O'Ree  (was: Kurt T Stam)

> track and map requestors IP address to auth token
> -------------------------------------------------
>                 Key: JUDDI-686
>                 URL: https://issues.apache.org/jira/browse/JUDDI-686
>             Project: jUDDI
>          Issue Type: Improvement
>            Reporter: Alex O'Ree
>            Assignee: Alex O'Ree
>             Fix For: 3.2
> basically, we can make auth token's a bit more secure by obtaining the requestor's ip
address and store that along with the auth token (server side). upon validating an new request,
we can then compare IP addresses. if they are different, invalidate the token and force reauthentication

This message was sent by Atlassian JIRA

View raw message