Hi all,

I have a question about the surrogate authentication:

For this example we have 2 configured services:

Service1: surrogate enabled, SSO enabled
Service2: surrogate disabled, SSO enabled

I will log me in to service 1 with the surrogate authentication over the 
CAS.
So lets say I am user "Marcel" and i want to surrogate as "testUser".
I authentication with "testUser+Marcel" und the password of "Marcel".

Now I will get forwarded to service 1 and all seems fine. I can see, that 
I'm logged in as "testUser". 

So now I want to visit service2. But the credentials will denied. Of 
course, because I am in the surrogate session and for service 2 this 
feature is disabled.

And here is my question: Is it possible, if the surrogate feature is 
disabled for service 2, that the CAS will try to authenticate the primary 
user instead the surrogate user? Or do I have to logout and login as 
"Marcel" for this?

It would be nice, if I can use for one site the surrogate feature and for 
surrogate disabled sites I would be still logged in as primary user. 

Maybe someone can help me here. Didn't find a specific note about this in 
the documentation.

Thanks,

Marcel Fromkorth

-- 
- Website: https://apereo.github.io/cas
- Gitter Chatroom: https://gitter.im/apereo/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
--- 
You received this message because you are subscribed to the Google Groups "CAS 
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to [email protected].
To view this discussion on the web visit 
https://groups.google.com/a/apereo.org/d/msgid/cas-user/136544da-072b-4569-b356-71fb734eee55n%40apereo.org.

Reply via email to