Last modified by Christoph Lechleitner on 2026-03-26 06.53:36

From version 13.1
edited by christoph_lechleitner@iteg_at
on 2013-10-27 11.06:53
Change comment: Chapter on config, as of upcoming 1.3.0
To version 15.3
edited by Christoph Lechleitner
on 2026-03-26 06.51:27
Change comment: Auto-saved during real-time collaboration

Summary

Details

Page properties
Author
... ... @@ -1,1 +1,1 @@
1 -XWiki.christoph_lechleitner@iteg_at
1 +XWiki.cl
Content
... ... @@ -1,6 +1,6 @@
1 1  === {{id name="org.clazzes.login.adapter.http-HTTPLoginAdapter"/}}HTTP Login Adapter ===
2 2  
3 -The login-service-adapter {{code language="none"}}org.clazzes.login.adapter.http{{/code}} listens for providers of the ##[[DomainPasswordLoginService>>doc:LOGIN.DomainPasswordLoginService implementations and backends.WebHome]]## interface and exports them adapted as a ##[[HttpLoginService>>doc:GWTBASICS.GWT implementations of http-util HttpLoginService.HTTP login service.WebHome]]## (see [[https:~~/~~/svn.clazzes.org/svn/util/trunk/http-util/src/main/java/org/clazzes/util/http/sec/HttpLoginService.java>>url:https://svn.clazzes.org/svn/util/trunk/http-util/src/main/java/org/clazzes/util/http/sec/HttpLoginService.java||shape="rect"]]).
3 +The login-service-adapter {{code language="none"}}org.clazzes.login.adapter.http{{/code}} listens for providers of the ##[[DomainPasswordLoginService>>doc:LOGIN.DomainPasswordLoginService implementations and backends.WebHome]]## interface and exports them adapted as a ##[[HttpLoginService>>doc:GWTBASICS.GWT implementations of http-util HttpLoginService.HTTP login service.WebHome]]## (see [[https:~~/~~/svn.clazzes.org/svn/util/trunk/http-util/src/main/java/org/clazzes/util/http/sec/HttpLoginService.java>>url:https://svn.clazzes.org/svn/util/trunk/http-util/src/main/java/org/clazzes/util/http/sec/HttpLoginService.java||shape="rect"]]).
4 4  
5 5  It is provided as an OSGi bundle, which may be activated by
6 6  
... ... @@ -19,7 +19,8 @@
19 19  )))
20 20  
21 21  URL of exported {{code language="none"}}DomainPasswordLoginService{{/code}}: {{code language="none"}}/http-login/<login.mechanism>/login{{/code}}
22 -<login.mechanism> beeing i.e. {{code language="none"}}jaas{{/code}} from [[doc:LOGIN.DomainPasswordLoginService implementations and backends.org\.clazzes\.login\.jaas.WebHome]], {{code language="none"}}ldap{{/code}} from [[doc:LOGIN.DomainPasswordLoginService implementations and backends.org\.clazzes\.login\.ldap.WebHome]], {{code language="none"}}http{{/code}} from [[doc:LOGIN.DomainPasswordLoginService implementations and backends.org\.clazzes\.login\.http.WebHome]].
22 +{{code language="none"}}<login.mechanism>{{/code}} beeing i.e. {{code language="none"}}org.clazzes.login.jaas{{/code}} for [[doc:LOGIN.DomainPasswordLoginService implementations and backends.org\.clazzes\.login\.jaas.WebHome]], ##o{{code language="none"}}rg.clazzes.login.l{{/code}}dap## from [[doc:LOGIN.DomainPasswordLoginService implementations and backends.org\.clazzes\.login\.ldap.WebHome]], ##o{{code language="none"}}rg.clazzes.login.h{{/code}}ttp## from [[doc:LOGIN.DomainPasswordLoginService implementations and backends.org\.clazzes\.login\.http.WebHome]].
23 +Older implementations may have not used the {{code language="none"}}org.clazzes.login.{{/code}} part, i.e. {{code language="none"}}jaas{{/code}} instead of {{code language="none"}}org.clazzes.login.jaas{{/code}} and so on.
23 23  
24 24  Starting with version 1.2.0 of http-login-adapter, the timezone of the user logging in is determined via javascript and propagated to the server as the login time zone, when the configuration parameter {{code language="none"}}doTimeZoneDetection=true{{/code}} is set. The login timezone may be queried using HttpLoginServer.getTimeZone() or ThreadLocalManager.getLoginTimeZone() when using HttpCheckLoginInterceptor of http-aop-util-1.2.0 or later
25 25  
... ... @@ -27,6 +27,7 @@
27 27  
28 28  The login time zone and/or login local may be overwritten using URL parameters to the login service like in the following examples:
29 29  
31 +(% class="wrapped" %)
30 30  |=(((
31 31  login URL
32 32  )))|=(((
... ... @@ -57,7 +57,7 @@
57 57  login with a french canadian locale.
58 58  )))
59 59  
60 -=== {{id name="org.clazzes.login.adapter.http-Testpad"/}}(% style="color: rgb(0,0,0);font-size: 16.0px;line-height: 1.5625;" %)Testpad(%%) ===
62 +=== {{id name="org.clazzes.login.adapter.http-Testpad"/}}(% style="color:#000000; font-size:16.0px; line-height:1.5625" %)Testpad(%%) ===
61 61  
62 62  There is a small testpad application to play with this adapter.
63 63  
... ... @@ -81,6 +81,7 @@
81 81  
82 82  The following configuration overview is valid as of version 1.3.0, which will be released around 2013-10-28.
83 83  
86 +(% class="wrapped" %)
84 84  |=(((
85 85  Name
86 86  )))|=(((
... ... @@ -87,28 +87,51 @@
87 87  Description
88 88  )))
89 89  |(((
90 -doTimeZoneDetection
93 +{{{doTimeZoneDetection}}}
91 91  )))|(((
92 92  Set to {{code language="none"}}true{{/code}} for multi-time-zone applications. Defaults to {{code language="none"}}false{{/code}}.
93 93  )))
94 94  |(((
95 -failureTimeout
98 +(% class="p1" %)
99 +{{{ephemeralOtpSeconds}}}
96 96  )))|(((
101 +The lifetime of ephemeral tokens in seconds.
102 +)))
103 +|(((
104 +{{{failureTimeout}}}
105 +)))|(((
97 97  Delay penalty after bad login attempts, in {{code language="none"}}ms{{/code}}. Default to 500.
98 98  )))
99 99  |(((
100 -secureCookie
109 +(% class="p1" %)
110 +{{{mailSender}}}
101 101  )))|(((
112 +Mail address of the sender of mails for two-factor authentication containing an ephemeral token.
113 +)))
114 +|(((
115 +{{{sameSitePolicy:}}}
116 +)))|Set to Lax to lig
117 +|(((
118 +{{{secureCookie}}}
119 +)))|(((
102 102  Wether to flag the session cookie as secure. Defaults to {{code language="none"}}false{{/code}}.
103 103  Set to {{code language="none"}}true{{/code}} for {{code language="none"}}https{{/code}}-only operations, which is highly recommended.
104 104  )))
105 105  |(((
106 -sessionCookie
124 +{{{sessionCookie}}}
107 107  )))|(((
108 108  Name of session cookie. Defaults to {{code language="none"}}LOGIN_SESSION_ID{{/code}}.
109 109  )))
110 110  |(((
111 -sessionTimeout
129 +{{{sessionTimeout}}}
112 112  )))|(((
113 113  Session timeout in minutes. Defaults to {{code language="none"}}180{{/code}} (=3 hours).
114 114  )))
133 +| |
134 +|(((
135 +(% class="p1" %)
136 +{{{smsSender}}}
137 +)))|(((
138 +SMS sender number of SMSes for two-factor authentication containing an ephemeral token.
139 +)))
140 +| |
Confluence.Code.ConfluencePageClass[0]
Id
... ... @@ -1,1 +1,1 @@
1 -688759
1 +688650
URL
... ... @@ -1,1 +1,1 @@
1 -https://clazzes.atlassian.net/wiki/spaces/LOGIN/pages/688759/org.clazzes.login.adapter.http
1 +https://clazzes.atlassian.net/wiki/spaces/LOGIN/pages/688650/org.clazzes.login.adapter.http