CAS ask me for authentication evey time

Scott Battaglia scott_battaglia at rutgers.edu
Thu Jul 6 11:30:14 EDT 2006


Jose,

There is currently a way to log out of CAS 
(https://CASSERVER/cas/logout) but we do not currently support "single 
sign out" which would notify all applications that the CAS session ended.

-Scott


Huertas Fernández wrote:
> If I have understood correctly, you have two options:
>
> a) Use secure session cookies. This is the most secure option, but the user is limited to open new windows or tabs within the same browser instance.
>
> b) Use persistent cookies. This option allows the user to open different browsers but could be potentially more insecure because the cookie is stored into disk.
>
> I was thinking that maybe the best option is that the user himself decide with a checkbox of the style "Remember me on this computer", but I have seen it has already been proposed here http://www.ja-sig.org/issues/browse/CAS-366
>
>   
>> Still, it's a logout feature to be aware of.  
>>     
> Is there any logout feature in the current release (3.0.4)? I have seen something here: http://www.ja-sig.org/wiki/display/CAS/Registered+services%2C+Global+logoff%2C+Service-specific+includes#Registeredservices%2CGloballogoff%2CService-specificincludes-logoff but it seems to be quite old (it refers to Yale CAS 2.0.12) and I have seen in the roadmap a new feature "Single signout support" planned for release 3.1.
>
>   
>> But there isn't a polished "Guide for CAS deployers" ala the Spring or
>> Hibernate book-style manuals.  There probably should be.
>>     
>
> It's a pity because you have done a very good job and that kind of documentation helps a lot when you are starting to use a new product (i.e. when you are evaluating a product to use in your project). Anyway, keep working on it, I like a lot what I have seen so far...
>
>   
>> The best way to receive that contribution would be as
>> a Jira issue with your new translations attached to it, so that it can be
>> scheduled and tracked from there.
>>     
>
> I have opened a new Jira here http://www.ja-sig.org/issues/browse/CAS-377 with the new translation attached. I hope this helps...
>
> Thanks for all your help,
>
> Jose Luis.
> -------------------------------------------------------------------------------------------------------------------
> Este correo electrónico y, en su caso, cualquier fichero anexo al mismo, contiene información de carácter confidencial exclusivamente dirigida a su destinatario o destinatarios. Queda prohibida su divulgación, copia o distribución a terceros sin la previa autorización escrita de Indra. En el caso de haber recibido este correo electrónico por error, se ruega notificar inmediatamente esta circunstancia mediante reenvío a la dirección electrónica del remitente. POR FAVOR, ANTES DE IMPRIMIR ESTE CORREO ELECTRÓNICO CONSIDERE SU APORTACIÓN A LA CONSERVACIÓN DEL MEDIO AMBIENTE POR LA REDUCCIÓN DE CONSUMO DE PAPEL.
>
> The information in this e-mail and in any attachments is confidential and solely for the attention and use of the named addressee(s). You are hereby notified that any dissemination, distribution or copy of this communication is prohibited without the prior written consent of Indra. If you have received this communication in error, please, notify the sender by reply e-mail. PLEASE CONSIDER YOUR ENVIRONMENTAL RESPONSIBILITY BEFORE PRINTING THIS E-MAIL.
>
> _______________________________________________
> Yale CAS mailing list
> cas at tp.its.yale.edu
> http://tp.its.yale.edu/mailman/listinfo/cas
>   


More information about the cas mailing list