Chris Covell wrote:
Venki On Monday 17 March 2003 15:36, you wrote:

AFAI understood OpenCA code, Role is stored only in the database.
Whenever some user access OpenCA page via https, RBAC "grant
function" extract serial no. from client certificate and
identifies the appropriate role from database then allow access to
him.

Yes, but this role is also used to define normal users certificates (am I wrong here Michael ?).

No, you are right.


...
Michael, can you tell us if this is an accepted way of using OpenCA roles ?

Different extensions were the original reason for roles. So it is an accepted way of using OpenCA. By the way, what is an accepted way. The big advantage of Open Source is that you can customize a product :)


Michael
--
-------------------------------------------------------------------
Michael Bell                   Email: [EMAIL PROTECTED]
ZE Computer- und Medienservice            Tel.: +49 (0)30-2093 2482
(Computing Centre)                        Fax:  +49 (0)30-2093 2704
Humboldt-University of Berlin
Unter den Linden 6
10099 Berlin                   Email (private): [EMAIL PROTECTED]
Germany                                       http://www.openca.org



-------------------------------------------------------
This SF.net email is sponsored by: Does your code think in ink? You could win a Tablet PC. Get a free Tablet PC hat just for playing. What are you waiting for?
http://ads.sourceforge.net/cgi-bin/redirect.pl?micr5043en
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to