Skip to content

Conversation

@dantraMSFT
Copy link
Contributor

@dantraMSFT dantraMSFT commented May 1, 2018

PR Summary

Disallow Basic Auth over HTTP on Unix

Fix: #6779

PR Checklist

@dantraMSFT dantraMSFT requested a review from SteveL-MSFT May 1, 2018 18:15
@dantraMSFT dantraMSFT changed the title Disallow Basic Auth over HTTP Disallow Basic Auth over HTTP on Unix May 1, 2018
<value>{0} authentication requires an explicit user name and password. Specify the user name and password by using the -Credential parameter and try the command again.</value>
</data>
<data name="BasicAuthOverHttpNotSupported">
<value>Basic authentication is not supported over HTTP on Unix</value>
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Missing . after Unix.

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Fixed

}
catch
{
$_.Exception | Should -BeOfType [System.Management.Automation.Remoting.PSRemotingTransportException]
Copy link
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

We should use

$ex = { ... } | Should -Throw -PassThrou "FullyQualifiedErrorId"
$ex.Exception ...

Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Copy link
Contributor Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Fixed

@TravisEz13 TravisEz13 added the Documentation Needed in this repo Documentation is needed in this repo label May 2, 2018
@TravisEz13
Copy link
Member

This is a user-facing change. Please file a doc issue in PowerShell-Docs

@dantraMSFT
Copy link
Contributor Author

Doc issue file: MicrosoftDocs/PowerShell-Docs#2394
I'm still trying to determine the best place to doc this change.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

WG-Remoting PSRP issues with any transport layer WG-Security security related areas such as JEA

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Explicitly disallow Basic Auth over HTTP with PSRP on Linux

5 participants