Start with this:

https://jasig.github.io/cas/4.1.x/installation/Logout-Single-Signout.html



Also on the theory/context of SLO:

https://wiki.shibboleth.net/confluence/display/CONCEPT/SLOIssues



1.       SLO is enabled by default in CAS.

2.       No special config is needed, unless you need it.

3.       There is no way to get the TGC.



CAS cannot log the user out of all applications magically. It has no access 
to those apps. Instead, it sends a special message to those apps asking them 
to logout, and this is why your B and C apps don’t log out because they are 
either not receiving that request, or not responding to it.



From: [email protected] [mailto:[email protected]] On Behalf Of James 
Naadjie
Sent: Thursday, January 14, 2016 9:36 AM
To: CAS Community <[email protected]>
Subject: [cas-user] CAS SLO for Rails and JAVA application



I’m not very clear on how Single Log out works with CAS server 4.1 and hope 
for a clear and simple explanation to help resolve an issue i’m having with 
my client applications.

Currently SSO works fine with my two applications.

Users can login to application A,B and C, A and B are Ruby on Rails 
applications using ruby-cas client. C is a Java application using acegi 
security(Now Spring security)

When users logout of application A, they are redirected to CAS server logout 
view, but are still logged in to application B,C. Same goes for logging out 
of B,C.



Is SLO for Cas server 4.1 enabled by default?

Does SLO require any special configuration to work on CAS server?

Is there a way to get and store the cas TGT cookie (value of cas cookie)?

-- 
You received this message because you are subscribed to the Google Groups 
"CAS Community" group.
To unsubscribe from this group and stop receiving emails from it, send an 
email to [email protected] 
<mailto:[email protected]> .
Visit this group at https://groups.google.com/a/apereo.org/group/cas-user/.

-- 
You received this message because you are subscribed to the Google Groups "CAS 
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
Visit this group at https://groups.google.com/a/apereo.org/group/cas-user/.

Reply via email to