Traefik plugin to authenticate users based on the Common Name, DNS Names and Email Addresses of their TLS client certificate. Optionally add the username as a request header for the upstream service.
The CN and SAN in my lab is for "centos8-1", but I set the key/value pair in users as "a:b", it should block the access? As the expected CN/SAN should be a. However, when I tried to curl the site, it is still valid:
Dear author,
I am trying to use this plugin in my Traefik for authenticating client cert and here is my configuration: static.yml:
Plugin loaded successfully:![image](https://github.com/safing/tlsauth/assets/19278537/4eaab76f-b38e-4f05-97f8-d33cb0a7becf)
dynamic.yml:
The CN and SAN in my lab is for "centos8-1", but I set the key/value pair in users as "a:b", it should block the access? As the expected CN/SAN should be a. However, when I tried to curl the site, it is still valid:
Did I missing something?
Thanks.