> A default service registry will be automatically created under /etc/cas


I've never found that to be the case .. it gets created in 
JAVA_IO_TEMPDIR/$server.context.path/services


eg .. with no other options, you'll find it in /tmp/cas/services.


IMPORTANT NOTE: despite what's claimed about externalized configuration, I can 
never get any -Dcas.standalone.config=blahblahblah to transfer into the tomcat 
container. Spring sees it just fine, but no dice on tomcat. Only thing what 
works is inside the classpath on an overlay (eg: 
./src/main/resources/whatever.properties).


In fact, spring doesn't seem to care one bit if /etc/cas is missing or not 
writable, as long as the goodies are in the classpath.

Anyone know how to build a WAR file with symlinks :)


WRT to the hazelcast stuff, the config directives in application.properties 
will fight with hazelcast.xml. I've been able to get away with this .

classpath:application.properties

cas.ticket.registry.hazelcast.configLocation=classpath:hazelcast.xml

cas.ticket.registry.hazelcast.mapName=tickets

cas.ticket.registry.hazelcast.cluster.evictionPolicy=LRU

cas.ticket.registry.hazelcast.cluster.maxNoHeartbeatSeconds=300

cas.ticket.registry.hazelcast.cluster.multicastEnabled=true

cas.ticket.registry.hazelcast.cluster.tcpipEnabled=false

cas.ticket.registry.hazelcast.cluster.loggingType=slf4j

cas.ticket.registry.hazelcast.cluster.instanceName=(whatever)

cas.ticket.registry.hazelcast.cluster.port=5701

cas.ticket.registry.hazelcast.cluster.backupCount=1

cas.ticket.registry.hazelcast.cluster.asyncBackupCount=0

cas.ticket.registry.hazelcast.cluster.multicastTrustedInterfaces=(ip address, 
but it ignores it)

cas.ticket.registry.hazelcast.crypto.signing.key=JWK of 512

cas.ticket.registry.hazelcast.crypto.signing.keySize=512

cas.ticket.registry.hazelcast.crypto.encryption.key=JWK of 16

cas.ticket.registry.hazelcast.crypto.encryption.keySize=16

cas.ticket.registry.hazelcast.crypto.alg=AES

cas.tgc.crypto.enabled=true

cas.tgc.crypto.encryption.key=JWK of 256

cas.tgc.crypto.encryption.keySize=256

cas.tgc.crypto.signing.key=JWK of 512

cas.tgc.crypto.signing.keySize=512

cas.tgc.crypto.alg=AES


For unknown and frustrating reasons, I have yet to get hazelcast to bind to the 
correct IP, it always uses the highest ordered one, which happens to be a 
vmwareLocalNet, but it works for single-node so I'll tackle that later.


classpath:hazelcast.xml

<hazelcast xsi:schemaLocation="http://www.hazelcast.com/schema/config 
hazelcast-config-3.10.xsd"

           xmlns="http://www.hazelcast.com/schema/config";

           xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance";>

    <instance-name>cas</instance-name>

    <map name="tickets-from-external-config">

        <max-idle-seconds>20000</max-idle-seconds>

        <eviction-policy>LFU</eviction-policy>

        <max-size policy="USED_HEAP_PERCENTAGE">0</max-size>

        <eviction-percentage>99</eviction-percentage>

    </map>

</hazelcast>

~


It seems that hazelcast.xml MUST be present, regardless of how little 
information is in there. I played with it and this is as little as you can get 
away with.




Michael Holstein

Cleveland State University

________________________________
From: [email protected] <[email protected]> on behalf of Ray Bon 
<[email protected]>
Sent: Wednesday, November 1, 2017 4:10:34 PM
To: [email protected]
Subject: Re: [cas-user] Re: SSO problems with CAS 5.1.3

Mohammad,

A default service registry will be automatically created under /etc/cas if no 
other option is set. I have not used the in memory option but you could try 
removing it to see if all works under default settings.

Ray

On Wed, 2017-11-01 at 16:47 +0330, Mohammad Anbari wrote:
This is my application.properties  in cas  src/main/resources:




cas.server.name<http://cas.server.name>: http://localhost:8080
cas.server.prefix: http://localhost:8080/cas

cas.authn.accept.users=
cas.ticket.registry.hazelcast.configLocation=classpath:/hazelcast.xml


cas.authn.ldap[0].type=AUTHENTICATED
cas.authn.ldap[0].ldapUrl=ldap://192.168.99.100:32769<http://192.168.99.100:32769>
cas.authn.ldap[0].useSsl=false
cas.authn.ldap[0].baseDn=ou=people,dc=planetexpress,dc=com
cas.authn.ldap[0].userFilter=uid={user}
cas.authn.ldap[0].bindDn=cn=Hubert J. 
Farnsworth,ou=people,dc=planetexpress,dc=com
cas.authn.ldap[0].bindCredential=professor



And This is my deployerConfigContext.xml :

<?xml version="1.0" encoding="UTF-8"?>
<beans xmlns="http://www.springframework.org/schema/beans";
xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"; 
xmlns:p="http://www.springframework.org/schema/p";
xmlns:c="http://www.springframework.org/schema/c"; 
xmlns:lang="http://www.springframework.org/schema/lang";
xmlns:util="http://www.springframework.org/schema/util";
xsi:schemaLocation="http://www.springframework.org/schema/beans
       http://www.springframework.org/schema/beans/spring-beans.xsd
       http://www.springframework.org/schema/lang
       http://www.springframework.org/schema/lang/spring-lang.xsd
       http://www.springframework.org/schema/util
       http://www.springframework.org/schema/util/spring-util.xsd";>

<util:list id="inMemoryRegisteredServices">
<bean class="org.apereo.cas.services.RegexRegisteredService"
p:id="1" p:name="HTTP services on localhost"
p:serviceId="^http://.*";
p:evaluationOrder="0" />
</util:list>

</beans>

And This is my added dependencies in cas pom file :

<dependencies>
<dependency>
<groupId>org.apereo.cas</groupId>
<artifactId>cas-server-webapp${app.server}</artifactId>
<version>${cas.version}</version>
<type>war</type>
<scope>runtime</scope>
</dependency>
<dependency>
<groupId>org.apereo.cas</groupId>
<artifactId>cas-server-support-ldap</artifactId>
<version>${cas.version}</version>
</dependency>
<dependency>
<groupId>org.apereo.cas</groupId>
<artifactId>cas-server-support-hazelcast-ticket-registry</artifactId>
<version>${cas.version}</version>
</dependency>
</dependencies>



These are all configuration i have done for my cas server, I think cas sso 
functionality does not need any further configuration, am i right ?

On Wed, Nov 1, 2017 at 12:48 PM, Andy Ng 
<[email protected]<mailto:[email protected]>> wrote:
Did you configure your properties file to the correct port?
You can do so with making a file application.properties in src/main/resources
And add these things here: 
https://apereo.github.io/cas/5.1.x/installation/Configuration-Properties.html#cas-server


On Wednesday, 1 November 2017 15:17:27 UTC+8, hadi wrote:
hi martin,
it's my mistake to mention,correct port is 8083

On Wednesday, November 1, 2017 at 10:37:17 AM UTC+3:30, Martin Bohun wrote:
well your example/list says that App1 is on port 8083, NOT on port 8080,

cheers,

martin

On Wednesday, November 1, 2017 at 5:54:27 PM UTC+11, hadi wrote:
Hi all

I am new to cas , I am configuring cas server on JBOSS( Wild Fly 10) and 
configured two cas client on separated embedded tomcat ( spring boot 
applications ) , all of these applications are in the same machine

localhost:8080 ---> refer to my cas server
localhost:8083 ---> refer to my App 1
localhost:8085 ---> refer to my App 2

When I refer to App1 Url ( localhost:8080) it redirects to cas server correctly 
but when i refer to App2 Url it redirects to cas server again.
cas server let me just one application login at the same time.

I am so confused and i do not know what to do ?
can anyone help me ?

thanks





--
- Website: https://apereo.github.io/cas
- Gitter Chatroom: https://gitter.im/apereo/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
---
You received this message because you are subscribed to the Google Groups "CAS 
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected]<mailto:[email protected]>.
To view this discussion on the web visit 
https://groups.google.com/a/apereo.org/d/msgid/cas-user/fdfabbe1-6e0a-44ea-8cf9-e6bb1ddffffc%40apereo.org<https://groups.google.com/a/apereo.org/d/msgid/cas-user/fdfabbe1-6e0a-44ea-8cf9-e6bb1ddffffc%40apereo.org?utm_medium=email&utm_source=footer>.



--
Ray Bon
Programmer analyst
Development Services, University Systems
2507218831 | CLE 019 | [email protected]

--
- Website: https://apereo.github.io/cas
- Gitter Chatroom: https://gitter.im/apereo/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
---
You received this message because you are subscribed to the Google Groups "CAS 
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected]<mailto:[email protected]>.
To view this discussion on the web visit 
https://groups.google.com/a/apereo.org/d/msgid/cas-user/1509567036.1877.110.camel%40uvic.ca<https://groups.google.com/a/apereo.org/d/msgid/cas-user/1509567036.1877.110.camel%40uvic.ca?utm_medium=email&utm_source=footer>.

-- 
- Website: https://apereo.github.io/cas
- Gitter Chatroom: https://gitter.im/apereo/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
--- 
You received this message because you are subscribed to the Google Groups "CAS 
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/a/apereo.org/d/msgid/cas-user/DM5PR08MB33233A1A0E684F90C8558B8A835F0%40DM5PR08MB3323.namprd08.prod.outlook.com.

Reply via email to