Skip to main content

Digital ID registration

You can configure a plugin to validate incoming requests for new Digital ID registration requests.

The Digital ID registration validation plugin receives information about:

  • Account ID (DN of the Digital ID)

  • NOS ID

  • Client ID

  • Target ID

  • Mail server

The plugin returns whether the registration should be allowed.

To configure this plugin, type the plugin’s full name in the DID REG VALIDATION PLUGIN field on the Manage the system > Modules > Digital ID page.

A built-in plugin, nos-validate.pss is shipped with Bravura Security Fabric . The nos-validate.pss plugin checks whether the matching account table entry for this registration has a user ID (shortid) that matches the NOS ID of the incoming registration. If the user ID and NOS ID do not match, the ID file is not uploaded to the did table.

Requirements

See Writing plugins for general requirements.

Execution points

The Digital ID registration validation plugin is run by the Digital ID (DID) module when a registration request is received.

Input

Following is an example of the input required for this plugin:

 "" "" = {
     "ACCOUNTID" = "CN=test 2/O=bravura"
     "CLIENTID" = "WINXP206"
     "MAILSERVER" = "CN=win2k4/O=bravura"
     "NOSID" = "Administrator77"
     "TARGETID" = "NOTES"
   } 

Output

Following is an example of the output expected for this plugin:

"" "" = {
     "errmsg" = "Everything is good :)"
     "retval" = "0"
   }