Maybe I wrote it in the wrong way. I will give an example: you are using 
LDAP+GAUTH  MFA. The you log in using CAS you will get first form where you 
need to supply your LDAP credentials. On the next page CAS will ask you for 
your GAUTH number... By default if you supply wrong LDAP password your 
authentication process will break and you will see an authorization error. 
You will never get to the GAUTH page if your first authorization fails. 
Exactly this is not allowed. User should not know which step failed. He 
needs to go through the whole process to get the result.

-- 
- CAS gitter chatroom: https://gitter.im/apereo/cas
- CAS mailing list guidelines: https://apereo.github.io/cas/Mailing-Lists.html
- CAS documentation website: https://apereo.github.io/cas
- CAS project website: https://github.com/apereo/cas
--- 
You received this message because you are subscribed to the Google Groups "CAS 
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/a/apereo.org/d/msgid/cas-user/a6a7960d-015f-4c10-8759-e92f40932520%40googlegroups.com.

Reply via email to