Hi,

I am setting up an LDAP service registry, and I am wondering if there is a 
standard schema definition for casRegisteredService out there?

Searching through the list I find someone's attribute/object definitions 
(copied below), but I am not sure if those came from the docs?  I'd like to 
make sure I have the right schema setup.

attributeTypes: (
    1.3.6.1.4.1.6760.6.1.1
    NAME 'casServiceUrlPattern'
    DESC 'Service URL pattern.'
    EQUALITY caseIgnoreMatch
    SUBSTR caseIgnoreSubstringsMatch
    SYNTAX 1.3.6.1.4.1.1466.115.121.1.15
    SINGLE-VALUE )
#
################################################################################
#
attributeTypes: (
    1.3.6.1.4.1.6760.6.1.2
    NAME 'casServiceEnabled'
    DESC 'Service enabled flag.'
    EQUALITY booleanMatch
    SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
    SINGLE-VALUE )
#
################################################################################
#
attributeTypes: (
    1.3.6.1.4.1.6760.6.1.3
    NAME 'casServiceSsoEnabled'
    DESC 'TRUE to participate in SSO, FALSE to force authentication.'
    EQUALITY booleanMatch
    SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
    SINGLE-VALUE )
#
################################################################################
#
attributeTypes: (
    1.3.6.1.4.1.6760.6.1.4
    NAME 'casServiceAnonymousAccess'
    DESC 'TRUE to use opaque, anonymous identifier for NetID, FALSE otherwise.'
    EQUALITY booleanMatch
    SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
    SINGLE-VALUE )
#
################################################################################
#
attributeTypes: (
    1.3.6.1.4.1.6760.6.1.5
    NAME 'casServiceAllowedToProxy'
    DESC 'TRUE to enable proxy authentication support, FALSE otherwise.'
    EQUALITY booleanMatch
    SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
    SINGLE-VALUE )
#
################################################################################
#
attributeTypes: (
    1.3.6.1.4.1.6760.6.1.6
    NAME 'casServiceTheme'
    DESC 'Spring theme name to use for service.'
    EQUALITY caseIgnoreMatch
    SUBSTR caseIgnoreSubstringsMatch
    SYNTAX 1.3.6.1.4.1.1466.115.121.1.15
    SINGLE-VALUE )
#
################################################################################
#
attributeTypes: (
    1.3.6.1.4.1.6760.6.1.7
    NAME 'casUsernameAttribute'
    DESC 'Attribute name whose value should be used for service-specific NetID.'
    EQUALITY caseIgnoreMatch
    SUBSTR caseIgnoreSubstringsMatch
    SYNTAX 1.3.6.1.4.1.1466.115.121.1.15
    SINGLE-VALUE )
#
################################################################################
#
attributeTypes: (
    1.3.6.1.4.1.6760.6.1.8
    NAME 'casAllowedAttributes'
    DESC 'Names of attributes to be released to service. Facilitates 
service-specific attribute release.'
    EQUALITY caseIgnoreMatch
    SUBSTR caseIgnoreSubstringsMatch
    SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
#
################################################################################
#
attributeTypes: (
    1.3.6.1.4.1.6760.6.1.9
    NAME 'casIgnoreAttributes'
    DESC 'TRUE to disable service-specific attribute release, FALSE otherwise. 
Supersedes casAllowedAttributes.'
    EQUALITY booleanMatch
    SYNTAX 1.3.6.1.4.1.1466.115.121.1.7
    SINGLE-VALUE )
#
################################################################################
#
attributeTypes: (
    1.3.6.1.4.1.6760.6.1.10
    NAME 'casEvaluationOrder'
    DESC 'Numerical evaluation order of this service.'
    EQUALITY integerMatch
    ORDERING integerOrderingMatch
    SYNTAX 1.3.6.1.4.1.1466.115.121.1.27
    SINGLE-VALUE )
#
################################################################################
#
attributeTypes: (
    1.3.6.1.4.1.6760.6.1.11
    NAME 'casRequiredHandlers'
    DESC 'Names of authentication handlers that must succeed to gain access to 
this service. Part of MFA support.'
    EQUALITY caseIgnoreMatch
    SUBSTR caseIgnoreSubstringsMatch
    SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 )
########################################################
#  Objectclasses below                                 #
########################################################
objectClasses: (
    1.3.6.1.4.1.6760.6.2.1
    SUP top
    STRUCTURAL
    NAME 'casRegisteredService'
    DESC 'CAS registered service.'
    MUST ( uid $ casServiceUrlPattern $ cn )
    MAY ( description $ casServiceEnabled $ casServiceSsoEnabled $ 
casServiceAnonymousAccess $
          casServiceAllowedToProxy $ casServiceTheme $ casUsernameAttribute $ 
casAllowedAttributes $
          casIgnoreAttributes $ casEvaluationOrder $ casRequiredHandlers ))


Thanks,

Jason

Jason Castor
Senior Programmer Analyst
[email protected]<mailto:[email protected]> | CLE C039

-- 
- Website: https://apereo.github.io/cas
- Gitter Chatroom: https://gitter.im/apereo/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
--- 
You received this message because you are subscribed to the Google Groups "CAS 
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/a/apereo.org/d/msgid/cas-user/47a3fabaa5c7418b87c722366f61705f%40uaru.uvic.ca.

Reply via email to