Re: AW: Spnego / Kerberos Authentication

2010-10-22 Thread Daniel Kulp
Oli, This is at a different level. This is transport level auth, similar to BasicAuth/DigestAuth/NTLM. It's payload independent stuff. Slightly different use case, but does have an impact when working with MS secured things. The WebServer itself can be configured to only accept proper

AW: Spnego / Kerberos Authentication

2010-10-21 Thread Oliver Wulff
Hi Christian I don't understand why the kerberos authentication itself is really relevant to CXF for two reasons: 1) the kerberos security token profile described a mapping for the GSS API to let issue a kerberos ticket when it has been submitted to oasis: http://xml.coverpages.org/WS-Security-