CAS Authentication without going to CAS Server?

Jean-Noël Colin jnc at info.fundp.ac.be
Thu Jan 15 03:15:58 EST 2009


Hello

I was wondering if there was a way to support the setup described  
below with CAS.

We have one main website (let's call it W1), through which users  
authenticates, using a custom DB (no ldap...). We would like to add  
associated websites (W2, W3), so that when users are logged in in W1,  
they can SSO to W2 or W3.

The issue is that owners of W1 don't want to have a transfer to CAS  
server to authenticate, that would be visible to end-users.

My question would then be: is there a possibility in CAS to request a  
ticket without having users directly authenticate to CAS server. What  
would need to be achieved is:
user logs into W1 (with no redirect to CAS, only W1)
W1 requests a ticket from CAS server
this ticket is then used to access W2 or W3 from W1

Is this feasible?

Personally, I would prefer that we design the authentication centrally  
in CAS, have W1 users authenticate in CAS server, but ok, business  
owners are business owners...

Thanks for your help

Jean-Noel Colin

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://tp.its.yale.edu/pipermail/cas/attachments/20090115/9d2ef8f4/attachment.html 


More information about the cas mailing list