Use case:
User uses cert on his SC to authenticate to IPA and log into IPA UI.
Scope:
Make UI work with mod_ssl/mod_nss and process cert to authenticate user.
Related:
https://fedorahosted.org/sssd/ticket/2596
Requires a lot of work because private key is on the smart card and therefore we cannot obtain TGT on the server after successful authentication as in forms-based auth.
Processing 4.2 backlog. This ticket was found as something that is not a priority for the nearest releases.
But as usual, please feel free to discuss your use cases or contribute patches, to make that happen sooner!
closing as duplicate of #5764
Metadata Update from @dpal: - Issue assigned to someone - Issue set to the milestone: FreeIPA 4.4
Login to comment on this ticket.