Team,

I may have discovered an issue with the Java CAS client in the way that
it rewrites the service redirect url once a ticket is validated by the
Saml Validation filter. It appears that the CommonUtils.
constructServiceUrl() fails to add back the SAMLart parameter in the way
that it parses out the request. As a result, with the two parameters
useSession=false and redirectAfterValidation=true, the user ends up in an
infinite loop of authentication/validation. 

 

I have captured the issue here: https://issues.jasig.org/browse/CASC-182
and will attempt to submit a fix shortly. 

 

Feedback is welcome :)

 

-Misagh



 


-- 
You are currently subscribed to cas-dev@lists.jasig.org as: 
arch...@mail-archive.com
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-dev

Reply via email to