CAS 3.0.5 and X509
Luca Scotto
lucascotto at gmail.com
Fri Aug 4 06:10:15 EDT 2006
Great, it is working!
I'm setup my use case integrating 3.0.5 with cas-373.
Only people with a Trusted Cert by Trusted Issuer, and with uid in
LDAP can pass my CAS Login.
If not: he is redirect to a "classic" NetID/Passwd login in page over an LDAP.
All this is achivied on a 4 pc:
1 - cas server
2 - jsp tomcat + yale client
3 - html , apache with mod_cas
4 - ldap server
NOW it work well if i insert my cert, by a CA, in IE.
I'have now a smartcard but i don't know why my IE don't call a dialog
for (this is not a CAS proble:)
I'm build up some test to make this use-case stable.
So i'm integrating CAS-373 into CAS 3.0.5.
I'd like to help u and your dev-team.
bye
On 04/08/06, Scott Battaglia <scott_battaglia at rutgers.edu> wrote:
> Glad you got it working!
>
> We're looking at integrating CAS-373 into CAS 3.0.6
>
> -Scott
>
> Scott Battaglia
> Application Developer, Architecture & Engineering Team
> Enterprise Systems and Services, Rutgers University
> v: 732.445.0097 | f: 732.445.5493 | scott_battaglia at rutgers.edu
>
>
>
> Luca Scotto wrote:
> > X509 is working now :) [thanks to DEBUG opt]
> >
> > I must add full info in "Trusted Issuer" value.
> >
> > All people with a Trusted Cert by Trusted Issuer can pass CAS Login.
> >
> > If a peolple don't have a Trusted Cert, browser can't connect.
> >
> > now i'll want:
> >
> > Only people with a Trusted Cert by Trusted Issuer, and with uid in
> > LDAP can pass CAS Login.
> > If not: i want to redirect to a "classic" NetID/Passwd login in page
> >
> > I'm now looking at http://www.ja-sig.org/issues/browse/CAS-373
> >
> > Luca Scotto
> >
> > On 02/08/06, Scott Battaglia <scott_battaglia at rutgers.edu> wrote:
> >
> >> In the CAS_HOME/webapp/WEB-INF/classes/log4j.properties file, add a line
> >> like the following:
> >>
> >> log4j.logger.org.jasig.cas.adaptors.x509=DEBUG
> >>
> >> -Scott
> >>
> >> Luca Scotto wrote:
> >>
> >>> org.jasig.cas.adaptors.x509=DEBUG
> >>>
> >>> where (path) i must add this line to have more info?
> >>>
> >>> Thanks
> >>>
> >>> (sorry for my stupid quest:)
> >>> _______________________________________________
> >>> Yale CAS mailing list
> >>> cas at tp.its.yale.edu
> >>> http://tp.its.yale.edu/mailman/listinfo/cas
> >>>
> >>>
> >> _______________________________________________
> >> Yale CAS mailing list
> >> cas at tp.its.yale.edu
> >> http://tp.its.yale.edu/mailman/listinfo/cas
> >>
> >>
> > _______________________________________________
> > Yale CAS mailing list
> > cas at tp.its.yale.edu
> > http://tp.its.yale.edu/mailman/listinfo/cas
> >
> _______________________________________________
> Yale CAS mailing list
> cas at tp.its.yale.edu
> http://tp.its.yale.edu/mailman/listinfo/cas
>
More information about the cas
mailing list