One of the following child elements can be used to attach an access control policy to matching requests:
- Enables native Apache
.htaccess support during Apache's authorization phase. This is automatic and implicitly plugged in for the
Native RequestMapper, but can be enabled by hand if the
XML RequestMapper is used. Note that this will fail for non-Apache servers.
If no element is included (or inherited or implicitly enabled), any access control is left to the resource itself and the SP simply passes its session information along.
If an error occurs when processing this element, a dummy policy to deny access is installed to prevent accidental exposure.