Re: [Architecture] Force Retry Mechanism per Step in Adaptive Authentication

2019-07-20 Thread Ishara Karunarathna
etry(context); >> } >> >>}); >> } >> }); >> >> } >> >> >> Please share your thoughts on this. >> >> >> Thanks, >> Senthalan >> -- >> Senthalan Kanagalingam | Software Eng

Re: [Architecture] [Dev][VOTE] Release WSO2 Identity Server 5.8.0 RC3

2019-05-17 Thread Ishara Karunarathna
ad/v5.8.0-rc3/wso2is-analytics-5.8.0-rc3.zip> > > > Please download, test the product and vote. > > [+] Stable - go ahead and release > [-] Broken - do not release (explain why) > > > Thanks, > - WSO2 Identity a

Re: [Architecture] [IAM] Validating Scopes during Access Token Issuing Phase

2019-03-05 Thread Ishara Karunarathna
tions Architect | > WSO2 Inc. > (m) +94 (77) 7776950 | (w) +94 (11) 2145345 | (e) joh...@wso2.com > [image: Signature.jpg] > -- Ishara Karunarathna Senior Technical Lead WSO2 Inc. - lean . enterprise . middleware | wso2.com email:

Re: [Architecture] Additional roles on top of Active Directory

2018-06-19 Thread Ishara Karunarathna
2 > > > > [image: cid:31391d25-b727-4571-b9f2-a66d58180757] > > id connect A/S > CVR 39611082 > Engager 8 > DK – 2605 Brøndbyvester > Denmark > > > _______ > Architecture mailing list > Architecture@wso2.org > https

Re: [Architecture] [Dev] [VOTE] Release of WSO2 Identity Server 5.6.0 RC3

2018-06-19 Thread Ishara Karunarathna
;>>>>>><https://github.com/wso2/product-is/milestone/30?closed=1> >>>>>>>>> >>>>>>>>> Source and distribution, >>>>>>>>> Runtime - >>>>>>>>> https://github.com/wso2/produc

Re: [Architecture] [Dev] [VOTE] Release WSO2 Identity Server 5.5.0 RC2

2018-03-15 Thread Ishara Karunarathna
gt;> WSO2 Inc.; http://wso2.com >>> >>> *E-mail: darsh...@wso2.com * >>> *Mobile: +94718566859 <071%20856%206859>*Lean . Enterprise . Middleware >>> >> >> >> >> -- >> Hasintha Indrajee >> WSO2, Inc. >>

Re: [Architecture] [GDPR] API Manager 3.0.0 GDPR Support

2018-02-07 Thread Ishara Karunarathna
Hi Sanjeewa, On Tue, Feb 6, 2018 at 12:33 PM, Sanjeewa Malalgoda wrote: > > > On Mon, Feb 5, 2018 at 11:29 PM, Ishara Karunarathna > wrote: > >> HI Sanjeewa, >> >> Pseudonym user ID (User ID) is not only limited to GDPR requirements but >> its really u

Re: [Architecture] [GDPR] API Manager 3.0.0 GDPR Support

2018-02-05 Thread Ishara Karunarathna
>>> sanjeewa. >>>>> -- >>>>> >>>>> *Sanjeewa Malalgoda* >>>>> WSO2 Inc. >>>>> Mobile : +94713068779 <+94%2071%20306%208779> >>>>> >>>>> <http://sanjeewamalalgoda.blogspot.com/&g

Re: [Architecture] Scope Registration API for carbon-auth

2018-01-09 Thread Ishara Karunarathna
/tomorrow? > This is more of a system API and you can use OAuth. and its ok to have some other authentication mechanism as well. Lets discuss in a meeting. -Ishara > > Thanks! > > On Tue, Jan 9, 2018 at 3:18 PM, Ishara Karunarathna > wrote: > >> Hi Malintha, >> &g

Re: [Architecture] Scope Registration API for carbon-auth

2018-01-09 Thread Ishara Karunarathna
the security interceptor at the product level so each >product can implement their own security interceptor. > > Thanks! > > > On Tue, Jan 9, 2018 at 10:31 AM, Ishara Karunarathna > wrote: > >> HI Sanjeewa, All, >> >> Please find my comment in line.

Re: [Architecture] Scope Registration API for carbon-auth

2018-01-08 Thread Ishara Karunarathna
is thread to discuss all aspects of scope registration and > finalize implementation. > > Thanks, > sanjeewa. > -- > > *Sanjeewa Malalgoda* > WSO2 Inc. > Mobile : +94713068779 <+94%2071%20306%208779> > > <http://sanjeewamalalgoda.blogspot.com/>blog :http://san

Re: [Architecture] REST API for resending confirmation code in account recovery and self registration scenarios

2017-12-04 Thread Ishara Karunarathna
>> [1] https://github.com/wso2-extensions/identity-governance/blob/ >> master/components/org.wso2.carbon.identity.user.endpoint/ >> src/main/java/org/wso2/carbon/identity/user/endpoint/impl/Re >> sendCodeApiServiceImpl.java >

Re: [Architecture] [IAM] Can we have exclusive permission to login to user portal?

2017-09-10 Thread Ishara Karunarathna
d we are invoking several admin services so those services also should work with this new permission. Thanks, Ishara > Thanks & Regards, > Johann. > > -- > > *Johann Dilantha Nallathamby* > Senior Lead Solutions Engineer > WSO2, Inc. > lean.enterprise.middleware >

Re: [Architecture] [IS] SCIM Support for Admin Users

2017-07-20 Thread Ishara Karunarathna
cgi-bin/mailman/listinfo/architecture >> >> > > > -- > *Bhathiya Jayasekara* > *Associate Technical Lead,* > *WSO2 inc., http://wso2.com <http://wso2.com>* > > *Phone: +94715478185 <+94%2071%20547%208185>* > *LinkedIn: http://www.linkedin.com/in/bhathiyaj > <http://

Re: [Architecture] IS Authentication Flow Behavior Between Multiple Service Providers

2017-07-14 Thread Ishara Karunarathna
>> Mobile: +94775505618 <+94%2077%20550%205618> >>> Blog:harshcreationz.blogspot.com >>> >> >> >> >> -- >> Thanks & Regards, >> Asela >> >> ATL >> Mobile : +94 777 625

Re: [Architecture] [IS] IS 5.5.0 += Adaptive Authentication

2017-05-25 Thread Ishara Karunarathna
if this step is applicable on the current authentication > context. > > .. > >*/ > > boolean isApplicable(StepConfig stepConfig, AuthenticationContext > context); > > } > > > > The other aspects of framework remains architecturally unchanged as the

Re: [Architecture] [APIM][C5] SSO Feature for Publisher/Store Login

2017-05-23 Thread Ishara Karunarathna
Hi, On Wed, May 24, 2017 at 11:49 AM, Bhathiya Jayasekara wrote: > Hi Ishara, > > On Tue, May 23, 2017 at 10:17 PM, Ishara Karunarathna > wrote: > >> Hi Naduni, >> >> In this flow user authentication should be done using ID token (you will >> get this w

Re: [Architecture] [APIM][C5] SSO Feature for Publisher/Store Login

2017-05-23 Thread Ishara Karunarathna
t;> Mobile: 0719143658 <071%20914%203658> >> [image: http://wso2.com/signature] <http://wso2.com/signature> >> > > > > -- > > *Sanjeewa Malalgoda* > WSO2 Inc. > Mobile : +94713068779 <+94%2071%20306%208779> > > <h

Re: [Architecture] Force Delete Identity Providers

2017-05-18 Thread Ishara Karunarathna
wso2.carbon.idp.mgt/ > src/main/java/org/wso2/carbon/idp/mgt/dao/IdPManagementDAO.java#L1759 > > Thanks, > Malithi. > > On Thu, May 18, 2017 at 1:22 PM, Prabath Siriwardena > wrote: > >> >> >> On Thu, May 18, 2017 at 12:09 AM, Ishara Karunarathna >> w

Re: [Architecture] Force Delete Identity Providers

2017-05-18 Thread Ishara Karunarathna
well), then also we have to came up with pre defined authentication chains. -Ishara > > If we agree - can we please prioritize this...? > > Thanks & Regards, > Prabath > > Twitter : @prabath > LinkedIn : http://www.linkedin.com/in/prabathsiriwardena > > Mobile :

Re: [Architecture] Distinguish between local and federated users in oauth tables

2017-05-17 Thread Ishara Karunarathna
provision the user...? This requires no UI >>> changes - can read the option from the IdP config... >>> >>> Thanks & regards, >>> -Prabath >>> >>> On Tue, May 16, 2017 at 10:26 PM, Ishara Karunarathna >>> wrote: >>> >>&

Re: [Architecture] Distinguish between local and federated users in oauth tables

2017-05-16 Thread Ishara Karunarathna
On Wed, May 17, 2017 at 10:37 AM, Prabath Siriwardena wrote: > > > On Tue, May 16, 2017 at 10:04 PM, Ishara Karunarathna > wrote: > >> >> >> On Wed, May 17, 2017 at 10:26 AM, Prabath Siriwardena >> wrote: >> >>> Also - related to JWT/SAML g

Re: [Architecture] Distinguish between local and federated users in oauth tables

2017-05-16 Thread Ishara Karunarathna
n be treated as token exchange mechanism And +1 for supporting this. -Ishara > > Thanks & regards, > -Prabath > > > On Tue, May 16, 2017 at 8:58 PM, Pushpalanka Jayawardhana > wrote: > >> >> >> On Tue, May 16, 2017 at 11:15 PM, Ishara Karunarathna

Re: [Architecture] Distinguish between local and federated users in oauth tables

2017-05-16 Thread Ishara Karunarathna
alankajaya.blogspot.com/ | LinkedIn: lk.linkedin.com/in/p >> ushpalanka/ | Twitter: @pushpalanka >> >> > > > -- > Thanks & Regards, > Prabath > > Twitter : @prabath > LinkedIn : http://www.linkedin.com/in/prabathsiriwardena > > Mobile : +1 650 625 7950 &

Re: [Architecture] [C5] [APIM] Frnot End scope validation

2017-04-25 Thread Ishara Karunarathna
nge Labels - update >>>>>>> 6. Change LC status buttons >>>>>>> 7. Endpoint Update >>>>>>> >>>>>> There will be "Endpoint - Add" too. >>>>>> >>>>>> Thanks, >>>>>>

Re: [Architecture] [C5] [APIM] Frnot End scope validation

2017-04-24 Thread Ishara Karunarathna
re Engineer > Mobile : +9477 262 9512 <+94%2077%20262%209512> > WSO2, Inc. | http://wso2.com/ > Lean . Enterprise . Middleware > > ___ > Architecture mailing list > Architectur

Re: [Architecture] A Claim MUST have a Issuer

2017-03-24 Thread Ishara Karunarathna
...@wso2.com) wrote: > > +1 for issuer - but please plan this post IS 6.0.0 > > Thanks & regards, > -Prabath > > On Tue, Mar 7, 2017 at 11:16 AM, Johann Nallathamby > wrote: > >> >> >> On Tue, Mar 7, 2017 at 2:12 PM, Ishara Karunarathna >&g

Re: [Architecture] A Claim MUST have a Issuer

2017-03-07 Thread Ishara Karunarathna
ann. > > -- > > *Johann Dilantha Nallathamby* > Technical Lead & Product Lead of WSO2 Identity Server > Governance Technologies Team > WSO2, Inc. > lean.enterprise.middleware > > Mobile - *+9476950* > Blog - *http://nallaa.wordpress.com <http://nallaa.wordpres

Re: [Architecture] [IS-6.0.0] SCIM list resources with multiple user stores

2017-03-07 Thread Ishara Karunarathna
On Tue, Mar 7, 2017 at 12:49 PM, Gayan Gunawardana wrote: > > > On Tue, Mar 7, 2017 at 9:43 AM, Ishara Karunarathna > wrote: > >> Hi, >> >> In SCIM domain is used to represent the whole administrative provisioning >> system . So I don't think do

Re: [Architecture] [IS-6.0.0] SCIM list resources with multiple user stores

2017-03-06 Thread Ishara Karunarathna
ware Engineer; WSO2 Inc.; http://wso2.com/ >>> Email: ga...@wso2.com >>> Mobile: +94 (71) 8020933 >>> >>> ___ >>> Architecture mailing list >>> Architecture@wso2.org >>> https://mail.ws

Re: [Architecture] [C5][IS] IS 6.0 SP/IDP configuration file restructuring

2017-02-15 Thread Ishara Karunarathna
On Thu, Feb 16, 2017 at 11:10 AM, Harsha Thirimanna wrote: > Hi Ishara, thanks for the feedback, > > On Wed, Feb 15, 2017 at 10:49 PM, Ishara Karunarathna > wrote: > >> Hi Harsha, >> >> On Thu, Feb 9, 2017 at 12:32 AM, Darshana Gunawardana >> wrote:

Re: [Architecture] [C5][IS] IS 6.0 SP/IDP configuration file restructuring

2017-02-15 Thread Ishara Karunarathna
gt;>>> would be great if i can get more feedbacks about this. >>>> >>>> thanks >>>> >>>> *Harsha Thirimanna* >>>> *Associate Tech Lead | WSO2* >>>> >>>> Email: hars...@wso2.com >>>&g

Re: [Architecture] [C5][IS] IS 6.0 SP/IDP configuration file restructuring

2017-02-15 Thread Ishara Karunarathna
>> > > > > -- > Regards, > > > *Darshana Gunawardana*Associate Technical Lead > WSO2 Inc.; http://wso2.com > > *E-mail: darsh...@wso2.com * > *Mobile: +94718566859 <+94%2071%20856%206859>*Lean . Ent

Re: [Architecture] C5 User Core Delete User Operation

2017-02-08 Thread Ishara Karunarathna
//wso2.com > > *E-mail: darsh...@wso2.com * > *Mobile: +94718566859 <+94%2071%20856%206859>*Lean . Enterprise . > Middleware > > ___ > Architecture mailing list > Architecture@wso2.org > https://mail.wso2.org/cgi

Re: [Architecture] [IS 6.0.0] Email Management Component Implementation

2017-01-23 Thread Ishara Karunarathna
> > -- > *Ayesha Dissanayaka* > Software Engineer, > WSO2, Inc : http://wso2.com > <http://www.google.com/url?q=http%3A%2F%2Fwso2.com&sa=D&sntz=1&usg=AFQjCNEZvyc0uMD1HhBaEGCBxs6e9fBObg> > 20, Palmgrove Avenue, Colombo 3 > E-Mail: aye...@wso2.com > > __

Re: [Architecture] C5 User Management APIs with SCIM 2.0

2017-01-22 Thread Ishara Karunarathna
. For an example SCIM does not allow to assign >>> roles to user. >>> >> > Can use SCIM extension model [1] [2] here ? > > > [1] - https://tools.ietf.org/html/draft-scim-core-schema-00#section-4 > [2] - http://wso2-oxygen-tank.10903.n7.nabble.com/Extending- > SC

Re: [Architecture] Account Lock/Disable Feature in IS 6.0.0

2017-01-20 Thread Ishara Karunarathna
l, then we need to check account disable in each operation. >> >> Thanks >> Isura. >> >> >> >> >> >> *Isura Dilhara Karunaratne* >> Senior Software Engineer | WSO2 >> Email: is...@wso2.com >> Mob : +94 772 254 810 <+94%2077%

Re: [Architecture] [Dev] [IS 6.0.0] [User Portal] Challenge Questions in Self sign-up page of user portal

2017-01-20 Thread Ishara Karunarathna
%204810> >>>> Blog : http://isurad.blogspot.com/ >>>> >>>> >>>> >>>> >>>> On Thu, Jan 19, 2017 at 9:48 AM, Rushmin Fernando >>>> wrote: >>>> >>>>> Hi Ishara, >>>>> >>

Re: [Architecture] [Dev] [IS 6.0.0] [User Portal] Challenge Questions in Self sign-up page of user portal

2017-01-18 Thread Ishara Karunarathna
ve still not implemented it. So I'm -1 for implementing > challenge questions. > > On Wed, Jan 18, 2017 at 11:41 PM, Ishara Karunarathna > wrote: > >> >> >> On Wed, Jan 18, 2017 at 11:17 PM, Nuwan Dias wrote: >> >>> >>> >>> On Wed

Re: [Architecture] [Dev] [IS 6.0.0] [User Portal] Challenge Questions in Self sign-up page of user portal

2017-01-18 Thread Ishara Karunarathna
On Wed, Jan 18, 2017 at 11:17 PM, Nuwan Dias wrote: > > > On Wed, Jan 18, 2017 at 11:12 PM, Ishara Karunarathna > wrote: > >> Hi All, >> >> Though challenge question is not secure mechanism this is a basic stuff >> client expect from an IAM solution. &

Re: [Architecture] [Dev] [IS 6.0.0] [User Portal] Challenge Questions in Self sign-up page of user portal

2017-01-18 Thread Ishara Karunarathna
> >>> >>>> Appreciate your ideas on this. >>>> >>>> Thanks and Regards >>>> -- >>>> Indunil Upeksha Rathnayake >>>> Software Engineer | WSO2 Inc >>>> Emailindu...@wso2.com >>>> Mobile

Re: [Architecture] Security Model for Product APIs in C5

2017-01-15 Thread Ishara Karunarathna
; Phone : +94 777 775 729 <+94%2077%20777%205729> > > ___ > Architecture mailing list > Architecture@wso2.org > https://mail.wso2.org/cgi-bin/mailman/listinfo/architecture > >

Re: [Architecture] [Dev] [VOTE] Release WSO2 Identity Server 5.3.0- RC3

2017-01-08 Thread Ishara Karunarathna
com/signature> > > _______ > Dev mailing list > d...@wso2.org > http://wso2.org/cgi-bin/mailman/listinfo/dev > > -- Ishara Karunarathna Associate Technical Lead WSO2 Inc. - lean . enterprise . middleware | wso2.com email: isha...@wso

Re: [Architecture] [IS] [C5] Self sign-up in C5 User Portal

2017-01-02 Thread Ishara Karunarathna
t;>> specific domains* and also a way to choose whether *administrators >>> should receive an email when a new account is created*. >>> >>> I would appreciate your ideas/suggestions on this. >>> >>> Thanks and Regards >>> -- >>> Indu

Re: [Architecture] [IS] [C5] Self sign-up in C5 User Portal

2017-01-02 Thread Ishara Karunarathna
reated*. > > I would appreciate your ideas/suggestions on this. > > Thanks and Regards > -- > Indunil Upeksha Rathnayake > Software Engineer | WSO2 Inc > Emailindu...@wso2.com > Mobile 0772182255 > -- Ishara Karunarathna Associate Technical

Re: [Architecture] [IS 6.0.0] Unique User Id for Identity Store

2016-12-06 Thread Ishara Karunarathna
is more suitable for the identity store. WDYT? >> >> Thanks, >> Thanuja >> >> -- >> *Thanuja Lakmal* >> Senior Software Engineer >> WSO2 Inc. http://wso2.com/ >> *lean.enterprise.middleware* >> Mobile: +94715979891 +94758009992 >> &

Re: [Architecture] [IS 6.0.0] Unique User Id for Identity Store

2016-12-06 Thread Ishara Karunarathna
Hi All, On Wed, Dec 7, 2016 at 10:06 AM, Ishara Karunarathna wrote: > Hi Nuwan, > > On Wed, Dec 7, 2016 at 9:58 AM, Nuwan Dias wrote: > >> >> On Wed, Dec 7, 2016 at 7:12 AM, Thanuja Jayasinghe >> wrote: >> >>> Hi All, >>> >>&

Re: [Architecture] [C5] Different user profiles for different domains

2016-11-21 Thread Ishara Karunarathna
Thirimanna wrote: > > > On Tuesday, November 22, 2016, Ishara Karunarathna > wrote: > >> Hi All, >> >> On Tue, Nov 22, 2016 at 9:42 AM, Johann Nallathamby >> wrote: >> >>> Guys, why is this not in architecture@? How is this discussion suitable >&

Re: [Architecture] [C5] Different user profiles for different domains

2016-11-21 Thread Ishara Karunarathna
cal dialect in that case if in a given dialect if we configure an attribute is required (SCIM dialect given name "required=true" ) in local dialect ( Local dialect given name "required=false" ) and we map SCIM given name to Local given name in that case we need to d

Re: [Architecture] Adding HMAC-based OTP (HOTP) to OAuth2 Security

2016-11-16 Thread Ishara Karunarathna
>>>>> >>>>>> [1] https://tools.ietf.org/html/draft-ietf-oauth-v2-http-mac-05 >>>>>> [2] https://tools.ietf.org/html/draft-ietf-oauth-token-binding-01 >>>>>> >>>>>> Thanks & Regards. >>>>>>

Re: [Architecture] [IS][Analytics] Implement a new feature to download the summary of security alerts

2016-11-15 Thread Ishara Karunarathna
as >>>> Intern Software Engineering - WSO2 >>>> >>>> Email : dan...@wso2.com >>>> Mobile : +94771160393 >>>> >>>> [image: http://wso2.com/signature] <http://wso2.com/signature> >>>> >>> >>> >

Re: [Architecture] [C5][APIM] REST API scope validation

2016-11-07 Thread Ishara Karunarathna
ile : +9477 262 9512 >>> WSO2, Inc. | http://wso2.com/ >>> Lean . Enterprise . Middleware >>> >>> ___ >>> Architecture mailing list >>> Architecture@wso2.org >>> https://mail.wso2.org/cgi-bin/mailman/listinfo/architecture >>&g

Re: [Architecture] Identity Server 5.3.0 New Feature - Prompt for missing predefined user attributes in the authentication flow

2016-10-31 Thread Ishara Karunarathna
post authentication extension. >>>> >>>> 7. Response handler in post authentication extension, reads the >>>> attributes from request, sets them as user attributes in AuthenticatedUser >>>> object a

Re: [Architecture] Identity Server 5.3.0 New Feature - Prompt for missing predefined user attributes in the authentication flow

2016-10-27 Thread Ishara Karunarathna
entifies this as the response of post authentication extension task >>> therefore calls the post authentication extension. >>> >>> 7. Response handler in post authentication extension, reads the >>> attributes from request, sets them as user attributes in Authenti

Re: [Architecture] Grouping Identity server configurations.

2016-10-24 Thread Ishara Karunarathna
ion. -Ishara > > Thanks & regards, > -Prabath > > On Fri, Oct 21, 2016 at 9:23 PM, Ishara Karunarathna > wrote: > >> Hi Prabath, >> >> Primary goal is to group the configurations but we can achieve isolations >> with access control. >> Let me d

Re: [Architecture] Grouping Identity server configurations.

2016-10-21 Thread Ishara Karunarathna
.. > > Thanks & regards, > -Prabath > > On Sun, Oct 16, 2016 at 1:07 AM, Ishara Karunarathna > wrote: > >> Hi All, >> >> With the current IS implementation We have individual SP configurations >> and we associate authentication chains, claim, provisioning

Re: [Architecture] [IS] What are the REST APIs in WSO2IS-5.3.0 that need to be secured?

2016-10-20 Thread Ishara Karunarathna
gt; -- > *Ayesha Dissanayaka* > Software Engineer, > WSO2, Inc : http://wso2.com > <http://www.google.com/url?q=http%3A%2F%2Fwso2.com&sa=D&sntz=1&usg=AFQjCNEZvyc0uMD1HhBaEGCBxs6e9fBObg> > 20, Palmgrove Avenue, Colombo 3 > E-Mail: aye...@wso2.com > -- Ishara

Re: [Architecture] [IS] Authorization for Service Providers

2016-10-19 Thread Ishara Karunarathna
ghts and suggestions. >> >> -- >> *Pulasthi Mahawithana* >> Senior Software Engineer >> WSO2 Inc., http://wso2.com/ >> Mobile: +94-71-5179022 >> Blog: http://blog.pulasthi.org >> >> <https://wso2.com/signature> >> >>

Re: [Architecture] [IS] Authorization for Service Providers

2016-10-18 Thread Ishara Karunarathna
tinfo/architecture >>>> >>>> >>> >>> >>> -- >>> *Godwin Amila Shrimal* >>> Senior Software Engineer >>> WSO2 Inc.; http://wso2.com >>> lean.enterprise.middleware >>> >>> mobile: *+94772264165* >>> linkedin: *http://lnkd.in/KUum6D <http://lnkd.

Re: [Architecture] Grouping Identity server configurations.

2016-10-18 Thread Ishara Karunarathna
th different angles > > On Sun, Oct 16, 2016 at 11:37 AM, Ishara Karunarathna > wrote: > >> Hi All, >> >> With the current IS implementation We have individual SP configurations >> and we associate authentication chains, claim, provisioning configurations >>

Re: [Architecture] Grouping Identity server configurations.

2016-10-18 Thread Ishara Karunarathna
Hi, On Mon, Oct 17, 2016 at 5:41 PM, Asela Pathberiya wrote: > > > On Sun, Oct 16, 2016 at 11:37 AM, Ishara Karunarathna > wrote: > >> Hi All, >> >> With the current IS implementation We have individual SP configurations >> and we associate aut

[Architecture] Grouping Identity server configurations.

2016-10-15 Thread Ishara Karunarathna
configurations in each SP level can inherit from SC configurations. Since we are going with container base Multi tenancy in C5, If a user does not like, that can be handle with this security circle. Thanks, Ishara [1] "[C5 IS] Multi-tenancy in C5 based IS" -- Ishara Karunarathna Associate Tech

Re: [Architecture] User-Core Unique User Id Implementation

2016-10-11 Thread Ishara Karunarathna
> >> >> Thanks, >> Akalanka. >> ​ >> >> >> -- >> *Darshana Akalanka Pagoda Arachchi,* >> *Senior Software Engineer, WSO2* >> *+94777118016 <%2B94777118016>* >> > > > > -- > *Kishanthan Thangarajah* > Technical Lead, > Platform Technologies

Re: [Architecture] Feature requirements on IS to be the sole Key Manager of API Manager

2016-10-11 Thread Ishara Karunarathna
t; -- > Nuwan Dias > > Software Architect - WSO2, Inc. http://wso2.com > email : nuw...@wso2.com > Phone : +94 777 775 729 > > _______ > Architecture mailing list > Architecture@wso2.org > https://mail.wso2.org/cgi-bin/mailman/listinfo/architecture > > --

Re: [Architecture] Common Extension Framework for IS Authenticators

2016-10-06 Thread Ishara Karunarathna
Hi Malaka. On Thu, Oct 6, 2016 at 12:25 PM, Malaka Silva wrote: > > > On Thu, Oct 6, 2016 at 10:31 AM, Ishara Karunarathna > wrote: > >> Hi Malaka. >> >> On Thu, Oct 6, 2016 at 9:42 AM, Malaka Silva wrote: >> >>> Hi Ishara, >>> >>

Re: [Architecture] Common Extension Framework for IS Authenticators

2016-10-05 Thread Ishara Karunarathna
nt to totp to support multi tenancy. > These logic's are built into totp and that is wrong. So we are planning to > have these in this module. > I think here you are trying to implement utility component to be used in authenticates. > > On Thu, Oct 6, 2016 at 9:29 AM, Isha

Re: [Architecture] Common Extension Framework for IS Authenticators

2016-10-05 Thread Ishara Karunarathna
NNECTORS/Configuring+ > TOTP+Authenticator > > Thanks, > Kathees > > -- > Kathees > Software Engineer, > email: kath...@wso2.com > mobile: +94772596173 > > ___ > Architecture mailing list > Architecture@wso2.org > https://mail.wso2.org/cgi-bin/mailman/list

Re: [Architecture] [architecture ] [IS-5.3.0] Admin forces password reset for user

2016-10-04 Thread Ishara Karunarathna
> >>>> For the MVP1, I am implementing handling *Admin Forced Password Reset* >>>> trigger with claim update and Handler to send an email with password reset >>>> link to user. >>>> >>>> Thanks! >>>> -Ayesha >>>>

Re: [Architecture] Pub/sub pattern for OAuth Key Revocations

2016-10-03 Thread Ishara Karunarathna
;>> >>>>> WSO2, Inc. (http://wso2.com) >>>>> email: dimut...@wso2.com >>>>> Mobile: +94773661935 >>>>> Blog: http://muthulee.blogspot.com >>>>> >>>>> Lean . Enterprise . Middleware >>>>> >>>> >>>> >>>&

Re: [Architecture] Ldap Connector for Carbon 5 User Core

2016-10-02 Thread Ishara Karunarathna
t; Mobile: +94772069460 >> >> ___ >> Architecture mailing list >> Architecture@wso2.org >> https://mail.wso2.org/cgi-bin/mailman/listinfo/architecture >> >> > > > -- > Dimuthu Leelarathne > Director, Solutions A

Re: [Architecture] [Dev] OSGI Service to provision users and roles based on the SAML response.

2016-09-29 Thread Ishara Karunarathna
t;>>>>>>>>> >>>>>>>>>> Thanks & Regards, >>>>>>>>>> Ishara Cooray >>>>>>>>>> Senior Software Engineer >>>>>>>>>> Mobile : +9477 262 9512 >>>>&

Re: [Architecture] [architecture ] [IS-5.3.0] Admin forces password reset for user

2016-09-27 Thread Ishara Karunarathna
.com >>> >> >> >> >> -- >> *Ayesha Dissanayaka* >> Software Engineer, >> WSO2, Inc : http://wso2.com >> <http://www.google.com/url?q=http%3A%2F%2Fwso2.com&sa=D&sntz=1&usg=AFQjCNEZvyc0uMD1HhBaEGCBxs6e9fBObg&

Re: [Architecture] Ldap Connector for Carbon 5 User Core

2016-09-19 Thread Ishara Karunarathna
lStore.java > > > If there are any suggestions for changes, please do reply and specify. > > > Regards, > > Vithusha Aarabhi > Intern ,Software Engineering > WSO2, Inc. > Lean. Enterprise. Middleware. > Mobile: +94772069460 > > ______

Re: [Architecture] [C5-UserCore] We must support following attributes definitions

2016-09-14 Thread Ishara Karunarathna
.ietf.org/html/rfc7644#page-24 > > > -- > Thanks & Regards, > > *Johann Dilantha Nallathamby* > Technical Lead & Product Lead of WSO2 Identity Server > Governance Technologies Team > WSO2, Inc. > lean.enterprise.middleware > > Mobile - *

Re: [Architecture] [Urgent] App Manager Service Providers registration and XACML policy creation related architectural changes - (was): [Dev] [AppM] Creating XACML Policies and Service Providers in Te

2016-08-15 Thread Ishara Karunarathna
t;>>> >>>>>> >>>>>> >>>>> http-method="all"> >>>>>> /permission/admin/login >>>>>> >>>>>>>>>>> http-method="pu

Re: [Architecture] Tiqr Client for IS Authenticator

2015-11-10 Thread Ishara Karunarathna
the milestone plan [1]. For more details >>>>>> on >>>>>> this API, refer [2] and [3]. >>>>>> >>>>>> [1] >>>>>> https://docs.google.com/a/wso2.com/spreadsheets/d/1tRL2uOm-j7VKSHIMaw8d-jzkEAY4nQU3XEf0

Re: [Architecture] [IDENTITY-3352] SCIM Dumb Mode Outbound Provisioning

2015-09-21 Thread Ishara Karunarathna
Hi Prabath, On Mon, Sep 21, 2015 at 8:25 PM, Prabath Siriwardena wrote: > > > On Mon, Sep 21, 2015 at 12:49 AM, Ishara Karunarathna > wrote: > >> Hi Prabath, >> >> On Mon, Sep 21, 2015 at 12:09 PM, Prabath Siriwardena >> wrote: >> >>> It l

Re: [Architecture] [IDENTITY-3352] SCIM Dumb Mode Outbound Provisioning

2015-09-21 Thread Ishara Karunarathna
r both smart mode and dumb mode we keep this data which will help us to >> implement a distributed user view of the user in future. >> >> >> -- >> Gayan Gunawardana >> Software Engineer; WSO2 Inc.; http://wso2.com/ >> Email: ga...@wso2.com >> Mobile: +94

Re: [Architecture] Bringing account recovery to IS Dashboard

2015-02-24 Thread Ishara Karunarathna
ds, > Prabath > > Twitter : @prabath > LinkedIn : http://www.linkedin.com/in/prabathsiriwardena > > Mobile : +1 650 625 7950 > > http://blog.facilelogin.com > http://blog.api-security.org > -- Ishara Karunarathna Senior Software Engineer WSO2 Inc. - lean . enterprise .

Re: [Architecture] HTTP PATCH method implementation for SCIM end points

2014-07-13 Thread Ishara Karunarathna
missing. Thanks, -Ishara > > Thoughts? > > Thanks, > Johann. > > > On Fri, Jul 11, 2014 at 6:58 PM, Ishara Karunarathna > wrote: > >> Hi Gayan, >> >> >> On Fri, Jul 11, 2014 at 1:15 AM, Gayan Gunawardana >> wrote: >> >>&

Re: [Architecture] HTTP PATCH method implementation for SCIM end points

2014-07-11 Thread Ishara Karunarathna
/www.simplecloud.info/specs/draft-scim-api-01.html#edit-resource-with-patch >> >> >> >> On Wed, Jul 9, 2014 at 11:20 PM, Johann Nallathamby >> wrote: >> >>> +1. This is a valuable addition to IS. >>> >>> >>> On Wed, Jul 9, 2014 at 11:44

Re: [Architecture] HTTP PATCH method implementation for SCIM end points

2014-07-08 Thread Ishara Karunarathna
mprovement in listing and filtering. I think its better to start with implementing with PATCH operation. > [1] > http://www.simplecloud.info/specs/draft-scim-api-01.html#edit-resource-with-patch > > > On Wed, Jul 9, 2014 at 10:39 AM, Ishara Karunarathna > wrote: > >> H

Re: [Architecture] HTTP PATCH method implementation for SCIM end points

2014-07-08 Thread Ishara Karunarathna
t; Are we going to scope PATCH implementation? > > WDYT? > > > [1] http://tools.ietf.org/html/draft-ietf-scim-api-02#section-3.3.2 > > [2] https://docs.wso2.com/display/IS500/Working+with+SCIM > -- > Gayan Gunawardana > Software Engineer; WSO2 Inc.; http://wso2.com/

[Architecture] Add application details to My Authorized Applications

2013-12-08 Thread Ishara Karunarathna
it it. Ex. we can show the Authorized scopes And let user to edit the scopes. Thanks. -- Ishara Karunarathna Software Engineer WSO2 Inc. - lean . enterprise . middleware | wso2.com email: isha...@wso2.com, blog: isharaaruna.blogspot.com, mobile: +94 7182

Re: [Architecture] Access tokens are differ based on the scope?

2013-12-05 Thread Ishara Karunarathna
> Asela. >> > >> > -- >> > Thanks & Regards, >> > Asela >> > >> > ATL >> > Mobile : +94 777 625 933 >> > > > > -- > Thanks & Regards, > Asela > > ATL > Mobile : +94 777 625 933 > -- Ishara

Re: [Architecture] [Identity Server] Applications

2013-11-10 Thread Ishara Karunarathna
On Mon, Nov 11, 2013 at 11:07 AM, Prabath Siriwardena wrote: > On Mon, Nov 11, 2013 at 10:41 AM, Ishara Karunarathna wrote: > >> Hi, >> >> On Mon, Nov 11, 2013 at 9:58 AM, Prabath Siriwardena wrote: >> >>> Hi Johann, >>> >>> Please find

Re: [Architecture] [Identity Server] Applications

2013-11-10 Thread Ishara Karunarathna
nsumer secret. > > Thanks & regards, > -Prabath > > >> >> >>> >>> 5. Would this change the Identity Server Management Console UI ? >>> >>> Yes. We need to have a tab for defining and listing Applications. Also >>> other tabs also need to ab

Re: [Architecture] How do we hanlde SCIM id/externalid/userName ?

2013-10-21 Thread Ishara Karunarathna
multiple > id's returned by CSPs. > > Thanks & regards, > -Prabath > > > On Tue, Oct 22, 2013 at 8:25 AM, Ishara Karunarathna wrote: > >> Hi Prabath, >> >> id (scimId attribute) >> Mandatory attribute, Random value generated by each Service

Re: [Architecture] How do we hanlde SCIM id/externalid/userName ?

2013-10-21 Thread Ishara Karunarathna
which are generally opaque and not > user-friendly identifiers). Each User MUST include a non-empty userName > value. This identifier MUST be unique across the Service Consumer’s entire > set of Users. REQUIRED. > > > Thanks & Regards, > Prabath > > Mobile : +94 71 809 6732

Re: [Architecture] Selective user provisioning via SCIM

2013-07-16 Thread Ishara Karunarathna
Hi, Sure I'll continue on this. Thanks, On Tue, Jul 16, 2013 at 1:10 PM, Prabath Siriwardena wrote: > +1 > > Can you please own this and add to RM... > > Thanks & regards, > -Prabath > > > On Tue, Jul 16, 2013 at 11:37 PM, Ishara Karunarathna wrote: >

Re: [Architecture] Selective user provisioning via SCIM

2013-07-16 Thread Ishara Karunarathna
om AD. > > Would be a good feature to have in IS. WDYT ? > > -- > Thanks & Regards, > Prabath > > Mobile : +94 71 809 6732 > > http://blog.facilelogin.com > http://RampartFAQ.com > -- Ishara Karunarathna Software Engineer WSO2 Inc. - lean . enterprise .

Re: [Architecture] Ability to plugin carbon authenticators for SAML SSO, OAuth, OPENID Login

2013-05-14 Thread Ishara Karunarathna
he IS. Then user can select the relevant Authenticator for the SP Thanks, Ishara On Tue, May 14, 2013 at 4:12 PM, Prabath Siriwardena wrote: > Hi Ishara, > > Thanks for following up on this.. Please see my comments inline.. > > On Tue, May 14, 2013 at 3:13 PM, Ishara Karunara

[Architecture] Ability to plugin carbon authenticators for SAML SSO, OAuth, OPENID Login

2013-05-14 Thread Ishara Karunarathna
I'm going to add pluggable authenticator support for SAML SSO, and will be axtend to OAuth ad OPENID logins. At the current implementation it support only Username password base authentication. What I'm going to implement is. 01. Add the CustomeAuthenticator configurations while registering a serv