SYNOPSIS

dacs_sts [\m[blue]dacsoptions\m[]\s-2\u[1]\d\s+2]

DESCRIPTION

This program is part of the DACS suite.

The dacs_sts web service is the Secure Token Service for DACS's managed Information Cards.

Refer to \m[blue]dacs_managed_infocard(8)\m[]\s-2\u[2]\d\s+2 for additional information.

Security

Depending on the application, consider adding a custom access control rule for dacs_sts (e.g., to limit access to a particular host or subnet, or even certain identities).

Configuration

The following configuration variables are available:

infocard_sts_password

For managed InfoCards generated with a \m[blue]INFOCARD_STS_AUTH_TYPE\m[]\s-2\u[3]\d\s+2 of "passwd" and an \m[blue]INFOCARD_STS_PASSWORD_METHOD\m[]\s-2\u[4]\d\s+2 of "sts", this is the global user password that must be provided. Changing this password affects all managed InfoCard accounts.

OPTIONS

Web Service Arguments

None.

DIAGNOSTICS

The program exits 0 if everything was fine, 1 if an error occurred.

BUGS

Secure token replay detection is not yet implemented.

As this is a relatively new and complicated feature, please test carefully.

RELATED TO dacs_sts…

\m[blue]dacsinfocard(1)\m[]\s-2\u[5]\d\s+2, \m[blue]dacs.conf(5)\m[]\s-2\u[6]\d\s+2, \m[blue]dacs_authenticate(8)\m[]\s-2\u[7]\d\s+2, \m[blue]dacs_infocard(8)\m[]\s-2\u[8]\d\s+2, \m[blue]dacs_managed_infocard(8)\m[]\s-2\u[2]\d\s+2, \m[blue]dacs_mex(8)\m[]\s-2\u[9]\d\s+2, \m[blue]Using InfoCards With DACS\m[]\s-2\u[10]\d\s+2

AUTHOR

Distributed Systems Software (\m[blue]www.dss.ca\m[]\s-2\u[11]\d\s+2)

COPYING

Copyright2003-2012 Distributed Systems Software. See the \m[blue]LICENSE\m[]\s-2\u[12]\d\s+2 file that accompanies the distribution for licensing information.

NOTES

1.

dacsoptions

http://dacs.dss.ca/man/dacs.1.html#dacsoptions

2.

dacs_managed_infocard(8)

http://dacs.dss.ca/man/dacs_managed_infocard.8.html

3.

INFOCARD_STS_AUTH_TYPE

http://dacs.dss.ca/man/dacs.conf.5.html#INFOCARD_STS_AUTH_TYPE

4.

INFOCARD_STS_PASSWORD_METHOD

http://dacs.dss.ca/man/dacs.conf.5.html#INFOCARD_STS_PASSWORD_METHOD

5.

dacsinfocard(1)

http://dacs.dss.ca/man/dacsinfocard.1.html

6.

dacs.conf(5)

http://dacs.dss.ca/man/dacs.conf.5.html

7.

dacs_authenticate(8)

http://dacs.dss.ca/man/dacs_authenticate.8.html

8.

dacs_infocard(8)

http://dacs.dss.ca/man/dacs_infocard.8.html

9.

dacs_mex(8)

http://dacs.dss.ca/man/dacs_mex.8.html

10.

Using InfoCards With DACS

http://dacs.dss.ca/man/using-infocards-with-dacs.html

11.

www.dss.ca

http://www.dss.ca

12.

LICENSE

http://dacs.dss.ca/man/../misc/LICENSE