![](https://seccdn.libravatar.org/avatar/af22e20b6884acbc89be6d7736c43e92.jpg?s=120&d=mm&r=g)
Hello community, here is the log from the commit of package CASA_auth_token_svc checked in at Thu Nov 23 16:13:34 CET 2006. -------- New Changes file: --- /dev/null 2002-12-09 23:01:21.000000000 +0100 +++ CASA_auth_token_svc/CASA_auth_token_svc.changes 2006-11-22 17:27:44.000000000 +0100 @@ -0,0 +1,110 @@ +------------------------------------------------------------------- +Wed Nov 22 08:43:26 MST 2006 - jluciani@novell.com + +- Resolved the following bugs: BUG222541, BUG216949, BUG215221. :-). + +------------------------------------------------------------------- +Tue Nov 21 17:53:20 MST 2006 - jluciani@novell.com + +- Added NOTICES file detailing the licenses and/or the copyrights + of all third party software used within the project. + +------------------------------------------------------------------- +Tue Nov 21 10:36:42 MST 2006 - jluciani@novell.com + +- Fixed spec file issue. + +------------------------------------------------------------------- +Fri Nov 17 17:08:13 MST 2006 - jluciani@novell.com + +- Removed hard dependency on IBM's JVM. + +------------------------------------------------------------------- +Thu Nov 9 11:42:15 MST 2006 - jluciani@novell.com + +- Completed the ATS configuration story with a tool that + sets up all of the needed configuration files and + parameters with support for a single LDAP Realm and + server. + +------------------------------------------------------------------- +Tue Nov 7 10:42:24 MST 2006 - jluciani@novell.com + +- The service is now only accessible via SSL. +- Created tools for editing settings and policy files. + +------------------------------------------------------------------- +Fri Oct 20 09:53:55 MDT 2006 - jluciani@novell.com + +- Modified the CasaAuthTokenSvc war file to no longer include the + identity-abstraction jars. The CASA_auth_token_svc rpm now requires + the installation of the identity-abstraction rpm and the service is + able to load its files from the location where they are installed + with settings set in the server.xml file of our tomcat base. + +------------------------------------------------------------------- +Wed Oct 18 17:22:01 MDT 2006 - jluciani@novell.com + +- Updated the RPM install of the ATS to install it as a service + and create the necessary signing keys. + +- Made changes to other components to integrate with the new + RPM install changes. + +------------------------------------------------------------------- +Tue Oct 10 08:45:22 MDT 2006 - jluciani@novell.com + +- Brought up to date the README and TODO files. + +------------------------------------------------------------------- +Thu Sep 21 15:41:18 MDT 2006 - jluciani@novell.com + +- Reduced Kerberos configuration requirements. Now the ATS service + principal name defaults to "host" and there is no need to set the + "javax.security.auth.useSubjectCredsOnly" system property to "false" + in the JAVA_OPTS. + +------------------------------------------------------------------- +Mon Sep 18 11:18:00 MDT 2006 - jluciani@novell.com + +- Updated the Svc to reduce the configuration requirements on services + that want to leverage the infrastructure. + +- Modified the WSSecurity module to not include the X509 certificate + in tokens if they are targeted to services residing on the same + box as the ATS. This is being done in order to minimize the size + of the tokens. + +------------------------------------------------------------------- +Thu Sep 14 09:57:00 MDT 2006 - jluciani@novell.com + +- Made changes to support the Authtoken Validate Service. This now + fixes support of "C" services. + +- Switched to using IBMs java instead of SUNs. This was done in order to + gain better Kerberos support (IBMs Kerberos modul supports more + encryption types) and to get around a problem in SUN's Invocation API + that was not letting us consume our AuthToken class from a native thread + other than the thread which creates the JVM. + +------------------------------------------------------------------- +Fri Aug 18 11:49:22 MDT 2006 - jluciani@novell.com + +- Implemented securing Authentication and Session Tokens using WS-Security. + This change temporarily breaks support of "C" services. "C" service support + will be resumed once the necessary changes are made to the native authentication + token APIs to support the new Authentication Tokens. + +------------------------------------------------------------------- +Mon Aug 14 14:25:27 MDT 2006 - jluciani@novell.com + +- Added some debug statements and added the sample Jaas application into + the tar file that is submitted to autobuild. + +------------------------------------------------------------------- +Mon Aug 7 10:28:32 MDT 2006 - schoi@novell.com +- This file has been created for CASA_auth_token_svc project for the first + time. + +------------------------------------------------------------------- + New: ---- CASA_auth_token_svc-1.7.1001.tar.bz2 CASA_auth_token_svc.changes CASA_auth_token_svc.spec check-build.sh ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ CASA_auth_token_svc.spec ++++++ # # spec file for package CASA_auth_token_svc (Version 1.7.1001 ) # # Copyright (c) 2006 SUSE LINUX Products GmbH, Nuernberg, Germany. # This file and all modifications and additions to the pristine # package are under the same license as the package itself. # # Please submit bugfixes or comments via http://bugs.opensuse.org/ # # norootforbuild Name: CASA_auth_token_svc %define cfg Release %define debug_opt "" URL: http://www.novell.com/products BuildRequires: gcc-c++ glib2-devel identity-abstraction insserv libstdc++ libstdc++-devel mono-devel pkgconfig servletapi5 sysvinit xerces-j2 BuildRequires: java-sdk-1.5.0 update-alternatives %define prefix /usr License: GNU Library General Public License v. 2.0 and 2.1 (LGPL) Group: System/Libraries Autoreqprov: on %define bldno 1.7.1001 Version: 1.7.1001 Release: 1 Summary: Novell CASA Authentication Token Service Source: %{name}-%{version}.tar.bz2 BuildRoot: %{_tmppath}/%{name}-%{version}-build Requires: java-1_5_0 >= 1.5.0 Requires: servletapi5 tomcat5 sysvinit insserv identity-abstraction sed PreReq: %fillup_prereq %insserv_prereq PreReq: /usr/bin/awk, /usr/bin/test, /bin/grep, /bin/cat, /usr/bin/install, /bin/pwd PreReq: /usr/sbin/groupadd, /usr/sbin/useradd, /usr/sbin/userdel, /usr/bin/getent BuildArchitectures: noarch %description CASA_auth_token is an authentication token infrastructure with support for multiple authentication mechanisms with an emphasis on providing a scalable single sign-on solution. A key feature of CASA_auth_token is that its authentication tokens contain identity information about the entity being authenticated. This information is made availableto the consuming services. The amount of information contained in the tokens is configured on a per-service basis. Because of this feature, we say that CASA_auth_token projects an "Authenticated Identity". The CASA_auth_token_svc is the infrastructure component responsible for authenticating entities using the native authentication mechanism and for issuing tokens that can later be used by applications to authenticate the entity o services that are CASA authentication enabled. Authors: -------- Juan Carlos Luciani - jluciani@novell.com %package -n CASA_auth_token_jaas_support Summary: Novell CASA Authentication Token JAAS Support Components Group: System/Libraries Requires: java-1_5_0-ibm %description -n CASA_auth_token_jaas_support CASA_auth_token is an authentication token infrastructure with support for multiple authentication mechanisms with an emphasis on providing a scalable single sign-on solution. A key feature of CASA_auth_token is that its authentication tokens contain identity information about the entity being authenticated. This information is made available to the consuming services. The amount of information contained in the tokens is configured on a per-service basis. Because of this feature, we say that CASA_auth_token projects an "Authenticated Identity". The CASA_auth_token_jaas_support package contains the CASA (Common Authentication Services Adapter) authentication token infrastructure JAAS module and supporting libraries for token verification. Authors: -------- Juan Carlos Luciani - jluciani@novell.com %prep %setup -q #%patch %if %{_lib} == "lib64" %define binsource bin64 %else %define binsource bin %endif %build export PATH=.:$PATH:/usr/%_lib/qt3/bin %if %suse_version > 1000 export CFLAGS="$CFLAGS $RPM_OPT_FLAGS -fstack-protector" %endif ./autogen.sh make make package %install export NO_BRP_CHECK_BYTECODE_VERSION="true" ## Prime the file system ## install -d %{buildroot}%{prefix} install -d %{buildroot}%{prefix}/share install -d %{buildroot}%{prefix}/share/java install -d %{buildroot}%{prefix}/share/java/CASA install -d %{buildroot}%{prefix}/share/java/CASA/authtoken install -d %{buildroot}%{prefix}/share/java/CASA/authtoken/bin install -d %{buildroot}/srv install -d %{buildroot}/srv/www install -d %{buildroot}/srv/www/casaats install -d -m 700 %{buildroot}/srv/www/casaats install -d -m 700 %{buildroot}/srv/www/casaats/conf install -d -m 700 %{buildroot}/srv/www/casaats/conf/Catalina install -d -m 700 %{buildroot}/srv/www/casaats/conf/Catalina/localhost install -d -m 700 %{buildroot}/srv/www/casaats/shared install -d -m 700 %{buildroot}/srv/www/casaats/shared/classes install -d -m 700 %{buildroot}/srv/www/casaats/shared/libs install -d -m 700 %{buildroot}/srv/www/casaats/webapps install -d -m 700 %{buildroot}/srv/www/casaats/logs install -d -m 700 %{buildroot}/srv/www/casaats/work install -d -m 700 %{buildroot}/srv/www/casaats/temp install -d %{buildroot}%{prefix}/share/java/CASA/authtoken/external install -d %{buildroot}/etc install -d %{buildroot}/etc/init.d install -d -m 755 %{buildroot}/var/lib/CASA install -d -m 755 %{buildroot}/var/lib/CASA/authtoken install -d -m 700 %{buildroot}/var/lib/CASA/authtoken/svc install -d -m 755 %{buildroot}/etc/CASA install -d -m 755 %{buildroot}/etc/CASA/authtoken install -d -m 755 %{buildroot}/etc/CASA/authtoken install -d -m 700 %{buildroot}/etc/CASA/authtoken/svc install -d -m 700 %{buildroot}/etc/CASA/authtoken/svc/auth_mechanisms install -d -m 700 %{buildroot}/etc/CASA/authtoken/svc/auth_mechanisms/Krb5Authenticate install -d -m 700 %{buildroot}/etc/CASA/authtoken/svc/auth_mechanisms/PwdAuthenticate install -d -m 700 %{buildroot}/etc/CASA/authtoken/svc/enabled_services install -d -m 700 %{buildroot}/etc/CASA/authtoken/svc/enabled_services/localhost install -d -m 755 %{buildroot}/etc/CASA/authtoken/svc/templates install -d -m 755 %{buildroot}/etc/CASA/authtoken/keys install -d -m 700 %{buildroot}/etc/CASA/authtoken/keys/server install -d -m 755 %{buildroot}/etc/CASA/authtoken/keys/client ## CASA_auth_token_svc ## # Libs install -m 755 %{_lib}/java/CasaAuthTokenSvc.war %{buildroot}%{prefix}/share/java/CASA/authtoken/CasaAuthTokenSvc-%{bldno}.war install -m 700 %{_lib}/java/CasaAuthTokenSvc.war %{buildroot}/srv/www/casaats/webapps/CasaAuthTokenSvc.war install -m 755 %{_lib}/java/CasaAuthTokenSettingsEditor.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaAuthTokenSettingsEditor-%{bldno}.jar install -m 755 %{_lib}/java/CasaIdenTokenSettingsEditor.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaIdenTokenSettingsEditor-%{bldno}.jar install -m 755 %{_lib}/java/CasaSvcSettingsEditor.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaSvcSettingsEditor-%{bldno}.jar install -m 755 %{_lib}/java/CasaAuthPolicyEditor.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaAuthPolicyEditor-%{bldno}.jar # Symbolic Links ln -sf CasaAuthTokenSvc-%{bldno}.war %{buildroot}%{prefix}/share/java/CASA/authtoken/CasaAuthTokenSvc.war ln -sf CasaAuthTokenSettingsEditor-%{bldno}.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaAuthTokenSettingsEditor.jar ln -sf CasaIdenTokenSettingsEditor-%{bldno}.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaIdenTokenSettingsEditor.jar ln -sf CasaSvcSettingsEditor-%{bldno}.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaSvcSettingsEditor.jar ln -sf CasaAuthPolicyEditor-%{bldno}.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaAuthPolicyEditor.jar # Settings and configuration files install -m 600 Svc/templates/svc.settings %{buildroot}/etc/CASA/authtoken/svc/templates/svc.settings install -m 600 Svc/templates/auth.policy %{buildroot}/etc/CASA/authtoken/svc/templates/auth.policy install -m 600 Svc/templates/iaRealms.xml %{buildroot}/etc/CASA/authtoken/svc/templates/iaRealms.xml install -m 600 Svc/templates/jaas.conf %{buildroot}/etc/CASA/authtoken/svc/templates/jaas.conf install -m 600 Svc/templates/authtoken.settings %{buildroot}/etc/CASA/authtoken/svc/authtoken.settings install -m 600 Svc/templates/identoken.settings %{buildroot}/etc/CASA/authtoken/svc/identoken.settings install -m 600 Svc/src/com/novell/casa/authtoksvc/Krb5_mechanism.settings %{buildroot}/etc/CASA/authtoken/svc/auth_mechanisms/Krb5Authenticate/mechanism.settings install -m 600 Svc/src/com/novell/casa/authtoksvc/Pwd_mechanism.settings %{buildroot}/etc/CASA/authtoken/svc/auth_mechanisms/PwdAuthenticate/mechanism.settings # Others install -m 700 Svc/linux/server_keystore_setup.sh %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/server_keystore_setup.sh install -m 700 Svc/linux/CasaBasicATSSetup.sh %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaBasicATSSetup.sh install -m 700 Svc/linux/CasaAuthPolicyEditor.sh %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaAuthPolicyEditor.sh install -m 700 Svc/linux/CasaAuthTokenSettingsEditor.sh %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaAuthTokenSettingsEditor.sh install -m 700 Svc/linux/CasaIdenTokenSettingsEditor.sh %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaIdenTokenSettingsEditor.sh install -m 700 Svc/linux/CasaSvcSettingsEditor.sh %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/CasaSvcSettingsEditor.sh install -m 755 Svc/linux/CasaAuthtokenSvcD %{buildroot}/etc/init.d/casa_atsd install -m 700 Svc/linux/envvars %{buildroot}/etc/CASA/authtoken/svc/envvars # Tomcat Base files install -m 600 Svc/tomcat5/conf/catalina.policy %{buildroot}/srv/www/casaats/conf/catalina.policy install -m 600 Svc/tomcat5/conf/catalina.properties %{buildroot}/srv/www/casaats/conf/catalina.properties install -m 600 Svc/tomcat5/conf/jk2.properties %{buildroot}/srv/www/casaats/conf/jk2.properties install -m 600 Svc/tomcat5/conf/linux/server-ibm.xml %{buildroot}/srv/www/casaats/conf/server-ibm.xml install -m 600 Svc/tomcat5/conf/linux/server-sun.xml %{buildroot}/srv/www/casaats/conf/server-sun.xml install -m 600 Svc/tomcat5/conf/tomcat-users.xml %{buildroot}/srv/www/casaats/conf/tomcat-users.xml install -m 600 Svc/tomcat5/conf/web.xml %{buildroot}/srv/www/casaats/conf/web.xml ## CASA_auth_token_jaas_support ## # Libs install -m 755 %{_lib}/java/CasaJaasSupport.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/CasaJaasSupport-%{bldno}.jar install -m 755 %{_lib}/java/CasaAuthToken.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/CasaAuthToken-%{bldno}.jar install -m 755 Svc/external/axis.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/axis.jar install -m 755 Svc/external/axis-ant.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/axis-ant.jar install -m 755 Svc/external/commons-discovery-0.2.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/commons-discovery-0.2.jar install -m 755 Svc/external/commons-logging-1.0.4.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/commons-logging-1.0.4.jar install -m 755 Svc/external/commons-logging-api.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/commons-logging-api.jar install -m 755 Svc/external/jaxrpc.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/jaxrpc.jar install -m 755 Svc/external/log4j.properties %{buildroot}%{prefix}/share/java/CASA/authtoken/external/log4j.properties install -m 755 Svc/external/log4j-1.2.8.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/log4j-1.2.8.jar install -m 755 Svc/external/saaj.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/saaj.jar install -m 755 Svc/external/wsdl4j-1.5.1.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/wsdl4j-1.5.1.jar install -m 755 Svc/external/wss4j-1.5.0.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/wss4j-1.5.0.jar install -m 755 Svc/external/xalan.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/xalan.jar install -m 755 Svc/external/xercesImpl.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/xercesImpl.jar install -m 755 Svc/external/xml-apis.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/xml-apis.jar install -m 755 Svc/external/xmlsec-1.2.1.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/external/xmlsec-1.2.1.jar install -m 644 Jaas/linux/crypto.properties %{buildroot}/etc/CASA/authtoken/keys/client/crypto.properties # Symbolic Links ln -sf CasaJaasSupport-%{bldno}.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/CasaJaasSupport.jar ln -sf CasaAuthToken-%{bldno}.jar %{buildroot}%{prefix}/share/java/CASA/authtoken/CasaAuthToken.jar # Others install -m 700 Jaas/linux/client_keystore_setup.sh %{buildroot}%{prefix}/share/java/CASA/authtoken/bin/client_keystore_setup.sh %clean rm -rf $RPM_BUILD_ROOT ## CASA_auth_token_svc ## %pre # Do necessary user and group administration group_present=`getent group | grep ^casaauth` if [ -z "$group_present" ] ; then /usr/sbin/groupadd -r casaauth fi user_present=`getent passwd | grep ^casaatsd` if [ -z "$user_present" ] ; then /usr/sbin/useradd -c "casaatsd System User" -s /bin/false -r -d /var/lib/CASA/authtoken/validate -g casaauth casaatsd 2> /dev/null || : fi %post # Install casa_atsd init script, set it to start by default. %{fillup_and_insserv casa_atsd} # Setup the keystore for the service %{prefix}/share/java/CASA/authtoken/bin/server_keystore_setup.sh %preun %stop_on_removal casa_atsd %postun #Undeploy our webapp rm -drf %{prefix}/share/java/CASA/authtoken/svc/webapps/CasaAuthTokenSvc %restart_on_update casa_atsd %insserv_cleanup # Do not do anything else if this is an upgrade if test "$1" == 1; then exit 0 fi # Delete the casaatsd user userdel casaatsd %files %defattr(-,root,root) %dir %{prefix}/share/java/CASA %dir %{prefix}/share/java/CASA/authtoken %dir %{prefix}/share/java/CASA/authtoken/bin %dir /var/lib/CASA %dir /var/lib/CASA/authtoken %dir /var/lib/CASA/authtoken/svc %dir /etc/CASA %dir /etc/CASA/authtoken %dir /etc/CASA/authtoken/keys %{prefix}/share/java/CASA/authtoken/CasaAuthTokenSvc-%{bldno}.war %{prefix}/share/java/CASA/authtoken/CasaAuthTokenSvc.war %{prefix}/share/java/CASA/authtoken/bin/server_keystore_setup.sh %{prefix}/share/java/CASA/authtoken/bin/CasaBasicATSSetup.sh %{prefix}/share/java/CASA/authtoken/bin/CasaAuthPolicyEditor.sh %{prefix}/share/java/CASA/authtoken/bin/CasaAuthTokenSettingsEditor.sh %{prefix}/share/java/CASA/authtoken/bin/CasaIdenTokenSettingsEditor.sh %{prefix}/share/java/CASA/authtoken/bin/CasaSvcSettingsEditor.sh %{prefix}/share/java/CASA/authtoken/bin/CasaAuthTokenSettingsEditor-%{bldno}.jar %{prefix}/share/java/CASA/authtoken/bin/CasaAuthTokenSettingsEditor.jar %{prefix}/share/java/CASA/authtoken/bin/CasaIdenTokenSettingsEditor-%{bldno}.jar %{prefix}/share/java/CASA/authtoken/bin/CasaIdenTokenSettingsEditor.jar %{prefix}/share/java/CASA/authtoken/bin/CasaSvcSettingsEditor-%{bldno}.jar %{prefix}/share/java/CASA/authtoken/bin/CasaSvcSettingsEditor.jar %{prefix}/share/java/CASA/authtoken/bin/CasaAuthPolicyEditor-%{bldno}.jar %{prefix}/share/java/CASA/authtoken/bin/CasaAuthPolicyEditor.jar /etc/init.d/casa_atsd %defattr(-,casaatsd,casaauth) %dir /srv/www/casaats %dir /srv/www/casaats/conf %dir /srv/www/casaats/conf/Catalina %dir /srv/www/casaats/conf/Catalina/localhost %dir /srv/www/casaats/shared %dir /srv/www/casaats/shared/classes %dir /srv/www/casaats/shared/libs %dir /srv/www/casaats/webapps %dir /srv/www/casaats/logs %dir /srv/www/casaats/work %dir /srv/www/casaats/temp %dir /etc/CASA/authtoken/svc %dir /etc/CASA/authtoken/svc/auth_mechanisms %dir /etc/CASA/authtoken/svc/auth_mechanisms/Krb5Authenticate %dir /etc/CASA/authtoken/svc/auth_mechanisms/PwdAuthenticate %dir /etc/CASA/authtoken/svc/enabled_services %dir /etc/CASA/authtoken/svc/enabled_services/localhost %dir /etc/CASA/authtoken/svc/templates %dir /etc/CASA/authtoken/keys/server /srv/www/casaats/webapps/CasaAuthTokenSvc.war %config /srv/www/casaats/conf/catalina.policy %config /srv/www/casaats/conf/catalina.properties %config /srv/www/casaats/conf/jk2.properties %config /srv/www/casaats/conf/server-ibm.xml %config /srv/www/casaats/conf/server-sun.xml %config /srv/www/casaats/conf/tomcat-users.xml %config /srv/www/casaats/conf/web.xml %config /etc/CASA/authtoken/svc/envvars /etc/CASA/authtoken/svc/templates/svc.settings /etc/CASA/authtoken/svc/templates/auth.policy /etc/CASA/authtoken/svc/templates/iaRealms.xml /etc/CASA/authtoken/svc/templates/jaas.conf %config /etc/CASA/authtoken/svc/authtoken.settings %config /etc/CASA/authtoken/svc/identoken.settings %config /etc/CASA/authtoken/svc/auth_mechanisms/Krb5Authenticate/mechanism.settings %config /etc/CASA/authtoken/svc/auth_mechanisms/PwdAuthenticate/mechanism.settings ## CASA_auth_token_jaas_support ## %pre -n CASA_auth_token_jaas_support # Nothing to do in this pre script %post -n CASA_auth_token_jaas_support /sbin/ldconfig # Setup the keystore for the clients %{prefix}/share/java/CASA/authtoken/bin/client_keystore_setup.sh %preun -n CASA_auth_token_jaas_support # Nothing to do in this preun script %postun -n CASA_auth_token_jaas_support # Nothing to do in this preun script %files -n CASA_auth_token_jaas_support %defattr(-,root,root) %dir %{prefix}/share/java/CASA %dir %{prefix}/share/java/CASA/authtoken %dir %{prefix}/share/java/CASA/authtoken/bin %dir %{prefix}/share/java/CASA/authtoken/external %dir /etc/CASA %dir /etc/CASA/authtoken %dir /etc/CASA/authtoken/keys %dir /etc/CASA/authtoken/keys/client %{prefix}/share/java/CASA/authtoken/CasaJaasSupport-%{bldno}.jar %{prefix}/share/java/CASA/authtoken/CasaJaasSupport.jar %{prefix}/share/java/CASA/authtoken/CasaAuthToken-%{bldno}.jar %{prefix}/share/java/CASA/authtoken/CasaAuthToken.jar %{prefix}/share/java/CASA/authtoken/bin/client_keystore_setup.sh %{prefix}/share/java/CASA/authtoken/external/axis.jar %{prefix}/share/java/CASA/authtoken/external/axis-ant.jar %{prefix}/share/java/CASA/authtoken/external/commons-discovery-0.2.jar %{prefix}/share/java/CASA/authtoken/external/commons-logging-1.0.4.jar %{prefix}/share/java/CASA/authtoken/external/commons-logging-api.jar %{prefix}/share/java/CASA/authtoken/external/jaxrpc.jar %{prefix}/share/java/CASA/authtoken/external/log4j.properties %{prefix}/share/java/CASA/authtoken/external/log4j-1.2.8.jar %{prefix}/share/java/CASA/authtoken/external/saaj.jar %{prefix}/share/java/CASA/authtoken/external/wsdl4j-1.5.1.jar %{prefix}/share/java/CASA/authtoken/external/wss4j-1.5.0.jar %{prefix}/share/java/CASA/authtoken/external/xalan.jar %{prefix}/share/java/CASA/authtoken/external/xercesImpl.jar %{prefix}/share/java/CASA/authtoken/external/xml-apis.jar %{prefix}/share/java/CASA/authtoken/external/xmlsec-1.2.1.jar %config /etc/CASA/authtoken/keys/client/crypto.properties %changelog -n CASA_auth_token_svc * Wed Nov 22 2006 - jluciani@novell.com - Resolved the following bugs: BUG222541, BUG216949, BUG215221. :-). * Tue Nov 21 2006 - jluciani@novell.com - Added NOTICES file detailing the licenses and/or the copyrights of all third party software used within the project. * Tue Nov 21 2006 - jluciani@novell.com - Fixed spec file issue. * Fri Nov 17 2006 - jluciani@novell.com - Removed hard dependency on IBM's JVM. * Thu Nov 09 2006 - jluciani@novell.com - Completed the ATS configuration story with a tool that sets up all of the needed configuration files and parameters with support for a single LDAP Realm and server. * Tue Nov 07 2006 - jluciani@novell.com - The service is now only accessible via SSL. - Created tools for editing settings and policy files. * Fri Oct 20 2006 - jluciani@novell.com - Modified the CasaAuthTokenSvc war file to no longer include the identity-abstraction jars. The CASA_auth_token_svc rpm now requires the installation of the identity-abstraction rpm and the service is able to load its files from the location where they are installed with settings set in the server.xml file of our tomcat base. * Wed Oct 18 2006 - jluciani@novell.com - Updated the RPM install of the ATS to install it as a service and create the necessary signing keys. - Made changes to other components to integrate with the new RPM install changes. * Tue Oct 10 2006 - jluciani@novell.com - Brought up to date the README and TODO files. * Thu Sep 21 2006 - jluciani@novell.com - Reduced Kerberos configuration requirements. Now the ATS service principal name defaults to "host" and there is no need to set the "javax.security.auth.useSubjectCredsOnly" system property to "false" in the JAVA_OPTS. * Mon Sep 18 2006 - jluciani@novell.com - Updated the Svc to reduce the configuration requirements on services that want to leverage the infrastructure. - Modified the WSSecurity module to not include the X509 certificate in tokens if they are targeted to services residing on the same box as the ATS. This is being done in order to minimize the size of the tokens. * Thu Sep 14 2006 - jluciani@novell.com - Made changes to support the Authtoken Validate Service. This now fixes support of "C" services. - Switched to using IBMs java instead of SUNs. This was done in order to gain better Kerberos support (IBMs Kerberos modul supports more encryption types) and to get around a problem in SUN's Invocation API that was not letting us consume our AuthToken class from a native thread other than the thread which creates the JVM. * Fri Aug 18 2006 - jluciani@novell.com - Implemented securing Authentication and Session Tokens using WS-Security. This change temporarily breaks support of "C" services. "C" service support will be resumed once the necessary changes are made to the native authentication token APIs to support the new Authentication Tokens. * Mon Aug 14 2006 - jluciani@novell.com - Added some debug statements and added the sample Jaas application into the tar file that is submitted to autobuild. * Mon Aug 07 2006 - schoi@novell.com - This file has been created for CASA_auth_token_svc project for the first time. ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Remember to have fun... --------------------------------------------------------------------- To unsubscribe, e-mail: opensuse-commit+unsubscribe@opensuse.org For additional commands, e-mail: opensuse-commit+help@opensuse.org
participants (1)
-
root@suse.de