From 478ce734b0d34b720b1ffc44b7911dd73055e655 Mon Sep 17 00:00:00 2001 From: Steve Milner Date: Wed, 6 May 2015 09:07:06 -0400 Subject: [PATCH] Added client header info for authentication doc. --- docs/authentication.md | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/docs/authentication.md b/docs/authentication.md index 65ee07d0de5..a12ef900eeb 100644 --- a/docs/authentication.md +++ b/docs/authentication.md @@ -16,6 +16,9 @@ be short-lived, and to be generated as needed rather than stored in a file. The token file format is implemented in `plugin/pkg/auth/authenticator/token/tokenfile/...` and is a csv file with 3 columns: token, user name, user uid. +When using token authentication from an http client the apiserver expects an `Authorization` +header with a value of `Bearer SOMETOKEN`. + Basic authentication is enabled by passing the `--basic_auth_file=SOMEFILE` option to apiserver. Currently, the basic auth credentials last indefinitely, and the password cannot be changed without restarting apiserver. Note that basic @@ -25,6 +28,8 @@ more secure modes described above easier to use. The basic auth file format is implemented in `plugin/pkg/auth/authenticator/password/passwordfile/...` and is a csv file with 3 columns: password, user name, user id. +When using basic authentication from an http client the apiserver expects an `Authorization` header +with a value of `Basic BASE64ENCODEDUSER:PASSWORD`. ## Plugin Development