Perl 6 - the future is here, just unevenly distributed

IRC log for #openam, 2016-03-04

| Channels | #openam index | Today | | Search | Google Search | Plain-Text | summary

All times shown according to UTC.

Time Nick Message
02:48 ilbot3 joined #openam
02:48 Topic for #openam is now Chat about the OpenAM project - https://backstage.forgerock.com/#/downloads - OpenAM 13.0.0 is out! OpenAM 12.0.2 is out! Channel logs at: http://irclog.perlgeek.de/openam/today
03:16 techtenk joined #openam
03:22 daveloper joined #openam
04:52 daveloper joined #openam
06:50 aldaris joined #openam
06:57 daveloper joined #openam
07:54 aldaris joined #openam
08:41 HelgeO joined #openam
09:46 daveloper1 joined #openam
09:56 daveloper1 joined #openam
10:55 daveloper joined #openam
11:35 aldaris joined #openam
11:43 daveloper joined #openam
11:49 MegaMatt joined #openam
12:10 daveloper joined #openam
12:24 daveloper joined #openam
12:51 aldaris joined #openam
12:56 aldaris joined #openam
12:57 mckeanbs joined #openam
13:23 mckeanbs joined #openam
13:39 daveloper joined #openam
14:17 urs joined #openam
14:19 urs Hey, I'm trying to install a web server to serve some sites behind a openAM-Based Single-Sign-On, but I find the documentation on the forgerock website somewhat confusing
14:19 aldaris join the club :)
14:19 aldaris which bit was causing you trouble?
14:20 urs All I find in terms of installation instructions are of the kind "download this java thing, run it, and it'll set you up"... given that sign-on is kind of a security relevant thing, I kinda don't want to just blindly run software I downloaded on the internet somewhere.
14:21 urs (Maybe I'm not actually looking at the correct documents? I was just following links from the European Space Agency, which is running the Identity Server...)
14:21 aldaris so is it better to ask random folks on a dodgy IRC channel for directions? :)
14:22 aldaris so what kind of questions do you have?
14:22 urs As long as they don't suggest me to download some *other* binary blobs. :D
14:22 urs Well, for example: is there any open-source version?
14:22 aldaris still my favorite URL shortener: http://shadyurl.com/
14:22 MegaMatt jut grab this superdodgy.exe and run it
14:23 MegaMatt Srsly though, it sounds like you’re trying to install the web agent into your web server…
14:23 aldaris the source for the major releases are open and available to anyone
14:24 mckeanbs left #openam
14:24 urs Ah, I see. Sorry for asking stupid questions first and then googling. :)
14:24 aldaris the binaries that you can download from backstage.forgerock.com has a "binary" license that says that it can be only used in production environments if you have a subscription with ForgeRock
14:26 MegaMatt You should be able to read the docs .. https://backstage.forgerock.com/#!/docs/o​penam-web-policy-agents/4/web-users-guide
14:27 aldaris @MegaMatt let's wait for an issue description before jumping to conclusions :)
14:27 MegaMatt But then how will I be wildy wrong about my assumptions?
14:30 urs trying to check out https://stash.forgerock.org/scm/openam/openam.git I get "fatal: remote error: Repository does not exist"
14:30 aldaris the clone url would look something like: ssh://git@stash.forgerock.org:7999/openam/openam.git
14:56 Slidey joined #openam
14:59 Slidey hi. apologies if this seems vague, but thats more likely due to my understanding. we've got openam being provided by a third party. they've requested/recommended that we use openig to authenticate users, which uses saml to authenticate into openam. the application we've built is an api driven app for both web and mobile, and would ideally authenticate using openam via a rest api
15:00 Slidey our providers have said that if we use saml, we'll get a token of type 1, and if we use an api/oauth2 we'll get a session token of type 2
15:00 daveloper joined #openam
15:01 urs aldaris' url gives me "ssh: connect to host stash.forgerock.org port 7999: Connection refused"
15:01 Slidey is that a standard/expected/normal way that openam works (transport mechanism decides on token type) or does this sound site specific?
15:03 urs and the "Build OpenAM from Source" wikipage at https://wikis.forgerock.org/confluence/​display/openam/Build+OpenAM+from+Source gives "503: Service Unavailable"
15:03 MegaMatt that url loads for me
15:16 asyd where is aldaris!
15:24 jjpp clone url should be https://stash.forgerock.org/scm/openam/openam.git
15:25 jjpp and you might want to check out release tag or branch to avoid the bleeding edge and the latest commits
15:32 urs jjpp: ah, thanks. That works.
15:35 aldaris joined #openam
15:54 techtenk joined #openam
16:18 aldaris Slidey not sure if you really need SAML there
16:19 aldaris it depends on what you are trying to do
16:19 aldaris if your app is being accessed by end-users, then a policy agent would just as well do
16:20 aldaris if you have a bunch of APIs that you need to protect with oauth2/oidc/etc, then openig is probably a better choice (in that case the users of those APIs would be HTTP clients and not necessarily end-users dealing with a JS app)
17:29 mckeanbs joined #openam
19:02 aldaris joined #openam
19:03 MegaMatt joined #openam
19:50 MegaMatt_ joined #openam
21:03 MegaMatt joined #openam
21:03 techtenk joined #openam
21:42 MegaMatt joined #openam
21:59 aldaris joined #openam
22:02 aldaris joined #openam
23:02 MegaMatt joined #openam

| Channels | #openam index | Today | | Search | Google Search | Plain-Text | summary