Replies: 1 comment
-
If you allow user/password authentication then you should configure a certificate for the server, even if only unsecured endpoints will be used, because otherwise the password will be sent in plaintext. |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
its not clear to me:
I created a simple server with:
and with user identity
![enter image description here](https://camo.githubusercontent.com/1b56d7c168af1e4991e699a5b399f9233ac2d59f1c77537a8f6233614b3d82a4/68747470733a2f2f692e737461636b2e696d6775722e636f6d2f647a5751372e706e67)
but using the UaExpert I got![enter image description here](https://camo.githubusercontent.com/10b57b6676527d5309ff5575a888a2abc00a44738cb0fe570d3926db3a8236b2/68747470733a2f2f692e737461636b2e696d6775722e636f6d2f31335738612e706e67)
is possible to user the user token only for authenticate at begin ? or if we use user policy is mandatory the certificate?
Beta Was this translation helpful? Give feedback.
All reactions