Gentoo Archives: gentoo-soc

From: "Michał Górny" <mgorny@g.o>
To: gentoo-soc@l.g.o
Subject: [gentoo-soc] identity.g.o OpenID provider -- weekly report #6
Date: Mon, 29 Jul 2013 21:24:36
Message-Id: 20130729232441.41e56a5a@gentoo.org
1 Hello, all.
2
3 Short summary: I'm working on creating an OpenID provider service using
4 Gentoo LDAP. It will provide a common login service for Gentoo
5 developers to Gentoo sites and other OpenID-aware sites (e.g. bug
6 trackers, blogs).
7
8 Source code: https://github.com/mgorny/identity.gentoo.org
9
10
11 Week #6
12 =======
13
14 Status: a little behind schedule
15
16
17 This week I was focusing on the issues related to SSL certificate
18 authentication. For this reason, I have gathered more information
19 on the topic, set up a testing SSL/UWSGI nginx instance, created a client
20 certificate and did some testing wrt server and browser behavior.
21
22 As a result, I've written a small blog post on the topic of implementing
23 certificate auth in okupy [1] and contacted robbat2 to discuss the details.
24 My ideas have proved to be problematic with the way Gentoo operates its
25 certificates, therefore I will need to discuss a better solutions.
26
27
28 Plans for next week:
29
30 - work on cleaning up and implementing more fields in django-ldapdb,
31 and -- as a result -- bringing more SReg/AX fields.
32
33 - support more AX namespaces/providers.
34
35 - continue the work on SSL support.
36
37
38 --
39 Best regards,
40 Michał Górny

Attachments

File name MIME type
signature.asc application/pgp-signature