1 |
Hello, all. |
2 |
|
3 |
Short summary: I'm working on creating an OpenID provider service using |
4 |
Gentoo LDAP. It will provide a common login service for Gentoo |
5 |
developers to Gentoo sites and other OpenID-aware sites (e.g. bug |
6 |
trackers, blogs). |
7 |
|
8 |
Source code: https://github.com/mgorny/identity.gentoo.org |
9 |
|
10 |
|
11 |
Week #6 |
12 |
======= |
13 |
|
14 |
Status: a little behind schedule |
15 |
|
16 |
|
17 |
This week I was focusing on the issues related to SSL certificate |
18 |
authentication. For this reason, I have gathered more information |
19 |
on the topic, set up a testing SSL/UWSGI nginx instance, created a client |
20 |
certificate and did some testing wrt server and browser behavior. |
21 |
|
22 |
As a result, I've written a small blog post on the topic of implementing |
23 |
certificate auth in okupy [1] and contacted robbat2 to discuss the details. |
24 |
My ideas have proved to be problematic with the way Gentoo operates its |
25 |
certificates, therefore I will need to discuss a better solutions. |
26 |
|
27 |
|
28 |
Plans for next week: |
29 |
|
30 |
- work on cleaning up and implementing more fields in django-ldapdb, |
31 |
and -- as a result -- bringing more SReg/AX fields. |
32 |
|
33 |
- support more AX namespaces/providers. |
34 |
|
35 |
- continue the work on SSL support. |
36 |
|
37 |
|
38 |
-- |
39 |
Best regards, |
40 |
Michał Górny |