[Top][All Lists]

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Monit httpd authentication

From: Florent Schildknecht
Subject: Re: Monit httpd authentication
Date: Mon, 08 Jun 2015 12:44:37 +0000

Hey Nils,

Thanks a lot for your answer,
I've tried to implement it,
It seems to almost work,

But I've just a small problem regarding mod_auth_form,
Not sure to understand if you have ever used (or not?) mod_auth_form?

Thanks a lot anyway!



Le lun. 8 juin 2015 à 05:37, Nils Steinger <address@hidden> a écrit :

On Thu, Jun 04, 2015 at 12:36:39AM -0700, flo-schild wrote:
> Is there any way to customise the authentication method for the monit httpd?
> I have nothing against HTTP_BASIC at the beginning, but I would rely to
> something a bit more advanced.
> Do you know if this is possible?
> I would even be interested by building a customised UI for it, but I do not
> know if this is something accessible?

Monit only supports HTTP Basic auth by itself, and that's really all it
needs (with Basic auth being supported by nearly all HTTP clients and
also being secure when used in conjunction with HTTPS).

If you're looking for something more aesthetically pleasing, you could
of course put the Monit web interface behind a reverse proxy and build
something custom that limits access to it: Assuming you're using Apache,
you could have Monit only listen on localhost, use ProxyPass to map to Monit's httpd port on your server, then set
up an auth barrier [1] using something like mod_auth_form [2].
Overall, that should be far easier and more portable than sticking an
additional auth mode and/or interface into Monit's code.

(Disclaimer: I'm using the ProxyPass approach myself, but I haven't used
mod_auth_form so far, so I can guarantee it'll do what you want it to.)



To unsubscribe:

reply via email to

[Prev in Thread] Current Thread [Next in Thread]