Authentication

From
Bret Jordan
Date
2015-10-06T16:52:00+00:00
ID
Thread
Authentication
We have had some discussion on the Slack channel over the past week about authentication and I mentioned at the end of last week that I would like to move that forward.
It has been proposed on the Slack channel that we use HTTP Basic with JWT (JSON Web Tokens) for the mandatory authentication in TAXII 2.0 with an extension point that is some how discoverable to allow for multi-factor authentication.
Thanks,
Bret
Bret Jordan CISSP
Director of Security Architecture and Standards
Office of the CTO  Blue Coat Systems
PGP Fingerprint: 63B4 FC53 680A 6B7D 1447  F2C0 74F8 ACAE 7415 0050
Without cryptography vihv vivc ce xhrnrw, however, the only thing that can not be unscrambled is an egg.
Attachment:
signature.asc
Description:  Message signed with OpenPGP using GPGMail