[Fiware-robotics] R: IdM and OpenVPN

Antonini Roberto roberto1.antonini at telecomitalia.it
Wed Apr 29 09:09:49 CEST 2015


Hi Pepe,
thanks so much for sharing this information,
if I understand well the configuration directives , at (VPN) server side (MASTER) we need to execute a script connecting to LDAP server to authenticate the client (Robot).
Hence, each robot will be provided with user and password to be authenticated by LDAP server (IdM GE) connected at server side.

 Have you already had some experience with iDM GE Keyrock?

Thanks,
Roberto


-----Messaggio originale-----
Da: fiware-robotics-bounces at lists.fi-ware.org [mailto:fiware-robotics-bounces at lists.fi-ware.org] Per conto di Jose Jaime Ariza
Inviato: martedì 28 aprile 2015 17:34
A: fiware-robotics at lists.fi-ware.org
Oggetto: [Fiware-robotics] IdM and OpenVPN

Hi all,

I've made some research about external authentication in OpenVPN. It looks like it can be achieved by using the "auth-user-pass-verify"
stanza and a script which returns 0 if the authentication is OK or 1 in other case.

Here you have some references, including a LDAP-auth example:
http://edoceo.com/howto/openvpn-auth-user-pass-verify
http://openvpn.net/index.php/open-source/documentation/howto.html#auth
https://openvpn.net/index.php/open-source/documentation/manuals/65-openvpn-20x-manpage.html
("--auth-user-pass-verify" setion).

Do you think that could be implemented in the VPNs that RCM is using?

BR,
Pepe.

--
José Jaime Ariza
R&D Engineer
+34 696604288
Ikergune, Etxe-Tar group

_______________________________________________
Fiware-robotics mailing list
Fiware-robotics at lists.fi-ware.org
https://lists.fi-ware.org/listinfo/fiware-robotics

Questo messaggio e i suoi allegati sono indirizzati esclusivamente alle persone indicate. La diffusione, copia o qualsiasi altra azione derivante dalla conoscenza di queste informazioni sono rigorosamente vietate. Qualora abbiate ricevuto questo documento per errore siete cortesemente pregati di darne immediata comunicazione al mittente e di provvedere alla sua distruzione, Grazie.

This e-mail and any attachments is confidential and may contain privileged information intended for the addressee(s) only. Dissemination, copying, printing or use by anybody else is unauthorised. If you are not the intended recipient, please delete this message and any attachments and advise the sender by return e-mail, Thanks.




More information about the Fiware-robotics mailing list

You can get more information about our cookies and privacy policies clicking on the following links: Privacy policy   Cookies policy