> A default service registry will be automatically created under /etc/cas
I've never found that to be the case .. it gets created in JAVA_IO_TEMPDIR/$server.context.path/services eg .. with no other options, you'll find it in /tmp/cas/services. IMPORTANT NOTE: despite what's claimed about externalized configuration, I can never get any -Dcas.standalone.config=blahblahblah to transfer into the tomcat container. Spring sees it just fine, but no dice on tomcat. Only thing what works is inside the classpath on an overlay (eg: ./src/main/resources/whatever.properties). In fact, spring doesn't seem to care one bit if /etc/cas is missing or not writable, as long as the goodies are in the classpath. Anyone know how to build a WAR file with symlinks :) WRT to the hazelcast stuff, the config directives in application.properties will fight with hazelcast.xml. I've been able to get away with this . classpath:application.properties cas.ticket.registry.hazelcast.configLocation=classpath:hazelcast.xml cas.ticket.registry.hazelcast.mapName=tickets cas.ticket.registry.hazelcast.cluster.evictionPolicy=LRU cas.ticket.registry.hazelcast.cluster.maxNoHeartbeatSeconds=300 cas.ticket.registry.hazelcast.cluster.multicastEnabled=true cas.ticket.registry.hazelcast.cluster.tcpipEnabled=false cas.ticket.registry.hazelcast.cluster.loggingType=slf4j cas.ticket.registry.hazelcast.cluster.instanceName=(whatever) cas.ticket.registry.hazelcast.cluster.port=5701 cas.ticket.registry.hazelcast.cluster.backupCount=1 cas.ticket.registry.hazelcast.cluster.asyncBackupCount=0 cas.ticket.registry.hazelcast.cluster.multicastTrustedInterfaces=(ip address, but it ignores it) cas.ticket.registry.hazelcast.crypto.signing.key=JWK of 512 cas.ticket.registry.hazelcast.crypto.signing.keySize=512 cas.ticket.registry.hazelcast.crypto.encryption.key=JWK of 16 cas.ticket.registry.hazelcast.crypto.encryption.keySize=16 cas.ticket.registry.hazelcast.crypto.alg=AES cas.tgc.crypto.enabled=true cas.tgc.crypto.encryption.key=JWK of 256 cas.tgc.crypto.encryption.keySize=256 cas.tgc.crypto.signing.key=JWK of 512 cas.tgc.crypto.signing.keySize=512 cas.tgc.crypto.alg=AES For unknown and frustrating reasons, I have yet to get hazelcast to bind to the correct IP, it always uses the highest ordered one, which happens to be a vmwareLocalNet, but it works for single-node so I'll tackle that later. classpath:hazelcast.xml <hazelcast xsi:schemaLocation="http://www.hazelcast.com/schema/config hazelcast-config-3.10.xsd" xmlns="http://www.hazelcast.com/schema/config" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance"> <instance-name>cas</instance-name> <map name="tickets-from-external-config"> <max-idle-seconds>20000</max-idle-seconds> <eviction-policy>LFU</eviction-policy> <max-size policy="USED_HEAP_PERCENTAGE">0</max-size> <eviction-percentage>99</eviction-percentage> </map> </hazelcast> ~ It seems that hazelcast.xml MUST be present, regardless of how little information is in there. I played with it and this is as little as you can get away with. Michael Holstein Cleveland State University ________________________________ From: [email protected] <[email protected]> on behalf of Ray Bon <[email protected]> Sent: Wednesday, November 1, 2017 4:10:34 PM To: [email protected] Subject: Re: [cas-user] Re: SSO problems with CAS 5.1.3 Mohammad, A default service registry will be automatically created under /etc/cas if no other option is set. I have not used the in memory option but you could try removing it to see if all works under default settings. Ray On Wed, 2017-11-01 at 16:47 +0330, Mohammad Anbari wrote: This is my application.properties in cas src/main/resources: cas.server.name<http://cas.server.name>: http://localhost:8080 cas.server.prefix: http://localhost:8080/cas cas.authn.accept.users= cas.ticket.registry.hazelcast.configLocation=classpath:/hazelcast.xml cas.authn.ldap[0].type=AUTHENTICATED cas.authn.ldap[0].ldapUrl=ldap://192.168.99.100:32769<http://192.168.99.100:32769> cas.authn.ldap[0].useSsl=false cas.authn.ldap[0].baseDn=ou=people,dc=planetexpress,dc=com cas.authn.ldap[0].userFilter=uid={user} cas.authn.ldap[0].bindDn=cn=Hubert J. Farnsworth,ou=people,dc=planetexpress,dc=com cas.authn.ldap[0].bindCredential=professor And This is my deployerConfigContext.xml : <?xml version="1.0" encoding="UTF-8"?> <beans xmlns="http://www.springframework.org/schema/beans" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:p="http://www.springframework.org/schema/p" xmlns:c="http://www.springframework.org/schema/c" xmlns:lang="http://www.springframework.org/schema/lang" xmlns:util="http://www.springframework.org/schema/util" xsi:schemaLocation="http://www.springframework.org/schema/beans http://www.springframework.org/schema/beans/spring-beans.xsd http://www.springframework.org/schema/lang http://www.springframework.org/schema/lang/spring-lang.xsd http://www.springframework.org/schema/util http://www.springframework.org/schema/util/spring-util.xsd"> <util:list id="inMemoryRegisteredServices"> <bean class="org.apereo.cas.services.RegexRegisteredService" p:id="1" p:name="HTTP services on localhost" p:serviceId="^http://.*" p:evaluationOrder="0" /> </util:list> </beans> And This is my added dependencies in cas pom file : <dependencies> <dependency> <groupId>org.apereo.cas</groupId> <artifactId>cas-server-webapp${app.server}</artifactId> <version>${cas.version}</version> <type>war</type> <scope>runtime</scope> </dependency> <dependency> <groupId>org.apereo.cas</groupId> <artifactId>cas-server-support-ldap</artifactId> <version>${cas.version}</version> </dependency> <dependency> <groupId>org.apereo.cas</groupId> <artifactId>cas-server-support-hazelcast-ticket-registry</artifactId> <version>${cas.version}</version> </dependency> </dependencies> These are all configuration i have done for my cas server, I think cas sso functionality does not need any further configuration, am i right ? On Wed, Nov 1, 2017 at 12:48 PM, Andy Ng <[email protected]<mailto:[email protected]>> wrote: Did you configure your properties file to the correct port? You can do so with making a file application.properties in src/main/resources And add these things here: https://apereo.github.io/cas/5.1.x/installation/Configuration-Properties.html#cas-server On Wednesday, 1 November 2017 15:17:27 UTC+8, hadi wrote: hi martin, it's my mistake to mention,correct port is 8083 On Wednesday, November 1, 2017 at 10:37:17 AM UTC+3:30, Martin Bohun wrote: well your example/list says that App1 is on port 8083, NOT on port 8080, cheers, martin On Wednesday, November 1, 2017 at 5:54:27 PM UTC+11, hadi wrote: Hi all I am new to cas , I am configuring cas server on JBOSS( Wild Fly 10) and configured two cas client on separated embedded tomcat ( spring boot applications ) , all of these applications are in the same machine localhost:8080 ---> refer to my cas server localhost:8083 ---> refer to my App 1 localhost:8085 ---> refer to my App 2 When I refer to App1 Url ( localhost:8080) it redirects to cas server correctly but when i refer to App2 Url it redirects to cas server again. cas server let me just one application login at the same time. I am so confused and i do not know what to do ? can anyone help me ? thanks -- - Website: https://apereo.github.io/cas - Gitter Chatroom: https://gitter.im/apereo/cas - List Guidelines: https://goo.gl/1VRrw7 - Contributions: https://goo.gl/mh7qDG --- You received this message because you are subscribed to the Google Groups "CAS Community" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]<mailto:[email protected]>. To view this discussion on the web visit https://groups.google.com/a/apereo.org/d/msgid/cas-user/fdfabbe1-6e0a-44ea-8cf9-e6bb1ddffffc%40apereo.org<https://groups.google.com/a/apereo.org/d/msgid/cas-user/fdfabbe1-6e0a-44ea-8cf9-e6bb1ddffffc%40apereo.org?utm_medium=email&utm_source=footer>. -- Ray Bon Programmer analyst Development Services, University Systems 2507218831 | CLE 019 | [email protected] -- - Website: https://apereo.github.io/cas - Gitter Chatroom: https://gitter.im/apereo/cas - List Guidelines: https://goo.gl/1VRrw7 - Contributions: https://goo.gl/mh7qDG --- You received this message because you are subscribed to the Google Groups "CAS Community" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]<mailto:[email protected]>. To view this discussion on the web visit https://groups.google.com/a/apereo.org/d/msgid/cas-user/1509567036.1877.110.camel%40uvic.ca<https://groups.google.com/a/apereo.org/d/msgid/cas-user/1509567036.1877.110.camel%40uvic.ca?utm_medium=email&utm_source=footer>. -- - Website: https://apereo.github.io/cas - Gitter Chatroom: https://gitter.im/apereo/cas - List Guidelines: https://goo.gl/1VRrw7 - Contributions: https://goo.gl/mh7qDG --- You received this message because you are subscribed to the Google Groups "CAS Community" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To view this discussion on the web visit https://groups.google.com/a/apereo.org/d/msgid/cas-user/DM5PR08MB33233A1A0E684F90C8558B8A835F0%40DM5PR08MB3323.namprd08.prod.outlook.com.
