[cas-dev] CredentialsToAttributePrincipalResolver

Marvin S. Addison serac at exchange.vt.edu
Fri May 18 10:42:32 EDT 2007


Scott,

I'm trying to follow your suggestion of using AttributeRepository to
extend CredentialsToAttributePrincipalResolver to return LDAP
attributes, but, before proceeding, I wanted to confirm that I
understand the purpose of AttributeRepository.  My understanding is that
administrators can use the registered services management application to
define the allowed attributes a service receives in the principal
returned upon successful service ticket validation.  Is that correct?
If so, that is a very powerful feature!  If that is incorrect, or there
are additional concerns, please mention them or point me to
documentation.

Thanks,
Marvin


More information about the cas-dev mailing list