Customizing The Radius Challenge-Response User Interface - Oracle Database B10772-01 Administrator's Manual

Database
Table of Contents

Advertisement

Customizing the RADIUS Challenge-Response User Interface

Customizing the RADIUS Challenge-Response User Interface
You can customize this interface by creating your own class to support the
functionality described in
up the SQLNET.RADIUS_AUTHENTICATION_INTERFACE parameter, and
replace the name of the class listed there (DefaultRadiusInterface), with the
name of the new class you have just created. When you make this change in the
sqlnet.ora
authentication process.
The third party must implement the Oracle RADIUS Interface, which is located in
the ORACLE.NET.RADIUS package.
public interface OracleRadiusInterface {
public void radiusRequest();
public void radiusChallenge(String challenge);
public String getUserName();
public String getPassword();
}
Table C–1 Server Encryption Level Setting
Parameter
radiusRequest
getUserName
getPassword
radiusChallenge
getResponse
C-2 Oracle Database Advanced Security Administrator's Guide
Table
C–1. You can then open the
file, the class is loaded on the Oracle client in order to handle the
Description
Generally, this prompts the user for a user name and password
which will later be retrieved through getUserName and
getPassword.
Extracts the user name the user enters. If this method returns
an empty string, it is assumed that the user wants to cancel the
operation. The user then receives a message indicating that the
authentication attempt failed.
Extracts the password the user enters. If getUserName returns
a valid string, but getPassword returns an empty string, the
challenge keyword is replaced as the password by the
database. If the user enters a valid password, a challenge may
or may not be returned by the RADIUS server.
Presents a request sent from the RADIUS server for the user to
respond to the server's challenge.
Extracts the response the user enters. If this method returns a
valid response, that information then populates the
User-Password attribute in the new Access-Request packet. If
an empty string is returned, the operation is aborted from both
sides by returning the corresponding value.
file, look
sqlnet.ora

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the Oracle Database B10772-01 and is the answer not in the manual?

Questions and answers

Subscribe to Our Youtube Channel

This manual is also suitable for:

Database advanced security 10g release 1

Table of Contents