|
Hm, yes - there is no remote operation, hence no validated cert to pick values from (that is why authentication is "local"). I don't remember exactly how it then populates the trusted information, if it looks up the cert to get them, and what happens if there is no cert.
I imagine that by giving the certname and there is a cert you want the rest of the values from that cert. Should you be able to override those? Is it ok if a cert does not exist (you are preparing stuff for a node that does not yet exist)? If so, you must be able to specify all of the trusted information fields.
|