diff --git a/Ghidra/RuntimeScripts/Common/server/svrREADME.html b/Ghidra/RuntimeScripts/Common/server/svrREADME.html index 7858190c9d..a04749a78c 100644 --- a/Ghidra/RuntimeScripts/Common/server/svrREADME.html +++ b/Ghidra/RuntimeScripts/Common/server/svrREADME.html @@ -258,8 +258,9 @@ The Ghidra Server has been designed to support many possible user authenticatio
  • JAAS - Java Authentication and Authorization Service (-a4) - user authentication is delegated to the JAAS subsystem. The -jaas <config_file> argument - is required to specify the JAAS config file. There is an example config file in the GhidraServer - directory called jaas.conf. + is required to specify the JAAS config file. The JAAS config file supplied (server/jaas.confi>) + contains various example configurations which may be used to establish an 'auth' configuration + section. None of the example configurations use the 'auth' name so they will be ignored by default.

    JAAS is architected similar to Linux/Unix PAM, where a named authentication configuration is possibly composed of several different modules. Ghidra's support of JAAS only handles single simple @@ -273,14 +274,14 @@ The Ghidra Server has been designed to support many possible user authenticatio

  • net.sf.jpam.jaas.JpamLoginModule - (Linux/Unix server only) allows authentication against the local PAM configuration. You will need to download JPAM from SourceForce and install the - libraries in the necessary locations. See the example in the jaas.conf file. + libraries in the necessary locations. See the example in the jaas.confi> file.
  • ghidra.server.security.loginmodule.ExternalProgramLoginModule - spawns an external program for each authentication request, and uses the external program's exit code as the indicator of successful authentication.

    - There is an example (and non-useful) implementation of an external authenticator in the GhidraServer - directory called jaas_external_program.example.sh. + There is an example (and non-useful) implementation of an external authenticator provided with + the Ghidra instalation called server/jaas_external_program.example.shi>.

    This login module strives to be compatible with Apache's mod_authnz_external API, and you should be able to use any mod_authnz_external authenticator with Ghidra.