Using Services Across Folders

Scott Battaglia scott.battaglia at gmail.com
Mon Jan 12 14:10:15 EST 2009


The Services Management tool only defines which services can access the CAS
server.

Its up to your client to lock down its own directories.

-Scott

-Scott Battaglia
PGP Public Key Id: 0x383733AA
LinkedIn: http://www.linkedin.com/in/scottbattaglia


On Mon, Jan 12, 2009 at 12:32 PM, Jeremy Wickham <jrw16 at its.msstate.edu>wrote:

> We are trying to lock down use of our CAS server, even down to the folder
> level.
>
> So for instance if I hit http://hostname.edu/index.jsp and it is defined
> in services management with that URL.  I do not want CAS to allow anyone to
> go to http://hostname.edu/folder/index.jsp.  Well when I hit the first
> link, login successfully, I am then able to browse to the second URL
> successfully.  I am wanting to keep that folder out of being able to use the
> CAS ticket.
>
> I know in the URL definitions are using Ant style pattern matching.  But
> upon testing I have found this to be a slight problem as we are wanting to
> be able lock down to the folder level.  Would this be up to the client, or
> is this something I can solve server side?
>
> Thanks,
>
> Jeremy Wickham
> Senior Programmer Analyst
> Enterprise Information Systems
> jeremy.wickham at msstate.edu
> (662) 325-9173
>
> _______________________________________________
> Yale CAS mailing list
> cas at tp.its.yale.edu
> http://tp.its.yale.edu/mailman/listinfo/cas
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://tp.its.yale.edu/pipermail/cas/attachments/20090112/5aaec166/attachment.html 


More information about the cas mailing list