<feed xmlns='http://www.w3.org/2005/Atom'>
<title>bmcweb/static/redfish/v1/JsonSchemas/OemAccountService, branch master</title>
<subtitle>OpenBMC Web server</subtitle>
<id>https://git.raptorcs.com/git/bmcweb/atom?h=master</id>
<link rel='self' href='https://git.raptorcs.com/git/bmcweb/atom?h=master'/>
<link rel='alternate' type='text/html' href='https://git.raptorcs.com/git/bmcweb/'/>
<updated>2019-11-12T07:39:07+00:00</updated>
<entry>
<title>TLS method configuration</title>
<updated>2019-11-12T07:39:07+00:00</updated>
<author>
<name>Zbigniew Kurzynski</name>
<email>zbigniew.kurzynski@intel.com</email>
</author>
<published>2019-10-02T09:22:11+00:00</published>
<link rel='alternate' type='text/html' href='https://git.raptorcs.com/git/bmcweb/commit/?id=501f1e58ea6fdf97163ce4ea05fbaf1861a62b79'/>
<id>urn:sha1:501f1e58ea6fdf97163ce4ea05fbaf1861a62b79</id>
<content type='text'>
User is now able to turn on and off the TLS authentication method.

Tested:
No regression found in manual testing. By default everything works
as before, and disabling TLS method prevents user to authenticate
by it.

Tested with Redfish Service Validator, version 1.2.8

Signed-off-by: Zbigniew Kurzynski &lt;zbigniew.kurzynski@intel.com&gt;
Change-Id: Ib7be1af659db568caa7e5b97e3844617586d7754
</content>
</entry>
<entry>
<title>Auth methods configuration</title>
<updated>2019-11-07T06:39:29+00:00</updated>
<author>
<name>Zbigniew Kurzynski</name>
<email>zbigniew.kurzynski@intel.com</email>
</author>
<published>2019-11-05T11:57:37+00:00</published>
<link rel='alternate' type='text/html' href='https://git.raptorcs.com/git/bmcweb/commit/?id=78158631aeab5b77ea9a5f566508285cb839fadf'/>
<id>urn:sha1:78158631aeab5b77ea9a5f566508285cb839fadf</id>
<content type='text'>
Added Oem extension for AccountService allowing user to configure
which authentication methods should be enabled. User is now able
to turn on and off authentication methods like BasicAuth, XToken, etc.
User is not allowed to turn off all of the methods at once - at least
one method has to be active to prevent lock-out. This configuration
is persistent, will be saved on file-system and will be loaded on
bmcweb's restart.

Tested:
No regression found in manual testing. By default everything works as before,
and disabling auth method prevents user to authenticate by it. Tested that
user is not allowed to disable all the methods - either in one PATCH or by
disabling them one at a time.
ServiceValidator run with success.

This change is a fix for this request:
https://gerrit.openbmc-project.xyz/c/openbmc/bmcweb/+/23590/18

which was revert here:
https://gerrit.openbmc-project.xyz/c/openbmc/bmcweb/+/26869

Signed-off-by: Zbigniew Kurzynski &lt;zbigniew.kurzynski@intel.com&gt;
Change-Id: I66b5ad423746f1992070a14f2983a07b1320190e
</content>
</entry>
<entry>
<title>Revert "Auth methods configuration"</title>
<updated>2019-11-04T21:25:46+00:00</updated>
<author>
<name>James Feist</name>
<email>james.feist@linux.intel.com</email>
</author>
<published>2019-11-04T21:19:48+00:00</published>
<link rel='alternate' type='text/html' href='https://git.raptorcs.com/git/bmcweb/commit/?id=eecd51a46e6d44ae3408d889ed037f4e4270d653'/>
<id>urn:sha1:eecd51a46e6d44ae3408d889ed037f4e4270d653</id>
<content type='text'>
This reverts commit 0ff64dc2cd3a15b4204a477ad2eb5219d66e6110.

Reason for revert: &lt;breaks redfish validator, &lt;edmx:Reference Uri="/redfish/v1/schema/OemAccountService_v1.xml"&gt; but the file name unversioned static/redfish/v1/schema/OemAccountService.xml&gt;

Change-Id: I696dd09bf519e364f5f529a674e047a8eeead578
Signed-off-by: James Feist &lt;james.feist@linux.intel.com&gt;
</content>
</entry>
<entry>
<title>Auth methods configuration</title>
<updated>2019-10-31T17:13:42+00:00</updated>
<author>
<name>Kowalski, Kamil</name>
<email>kamil.kowalski@intel.com</email>
</author>
<published>2019-07-12T07:59:11+00:00</published>
<link rel='alternate' type='text/html' href='https://git.raptorcs.com/git/bmcweb/commit/?id=0ff64dc2cd3a15b4204a477ad2eb5219d66e6110'/>
<id>urn:sha1:0ff64dc2cd3a15b4204a477ad2eb5219d66e6110</id>
<content type='text'>
Added Oem extension for AccountService allowing user to configure
which authentication methods should be enabled. User is now able
to turn on and off authentication methods like BasicAuth, XToken, etc.
User is not allowed to turn off all of the methods at once - at least
one method has to be active to prevent lock-out. This configuration
is persistent, will be saved on file-system and will be loaded on
bmcweb's restart.

Tested:
No regression found in manual testing. By default everything works as before,
and disabling auth method prevents user to authenticate by it. Tested that
user is not allowed to disable all the methods - either in one PATCH or by
disabling them one at a time.
ServiceValidator run with success.

Change-Id: I3a775d783ac05998d17b8e91800962bffd8cab52
Signed-off-by: Kowalski, Kamil &lt;kamil.kowalski@intel.com&gt;
Signed-off-by: Zbigniew Kurzynski &lt;zbigniew.kurzynski@intel.com&gt;
</content>
</entry>
</feed>
