Skip to content
This repository has been archived by the owner on Feb 16, 2021. It is now read-only.

How do we want to deal with scans that failed auth_method detection? #74

Open
claudijd opened this issue Jun 14, 2017 · 0 comments
Open

Comments

@claudijd
Copy link
Contributor

Options...

1.) Investigate further why the auth_method detection isn't working or why the client is erroring
2.) Return a partial result, but fail on compliance for the auth_method part
3.) In cases where we can't determine compliance, maybe we give them a pass on auth_method detection

Cases I think of that could cause this would be services that expect client-side certs or have some sort of MFA requirement, but pokeinthe.io is a good repro target to work with.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant