On Tue, 7 May 2013, Peter Clijsters wrote:
I'm evaluating if CAS can be setup as a SAML2 Service Provider (SP) proxy. What I mean with this is that CAS protects clients as usual, but when an authentication is necessary a federated login is performed with a remote SAML2 IDP. This would mean that CAS supports SAML2 for authentication. I've seen CASShib that does what I want, but the activity in this project seems low and the latest release was from January 2012. Is there another option or is CASShib the only one?
Yes CAS (server) can act as an RP to a Shibboleth (or other SAML) IdP for that matter. You will use the "TrustedAuth" provider for the CAS login-provider. Exact question was asked on the Educause IDM list just last month. Follow the topic in the below link. http://listserv.educause.edu/cgi-bin/wa.exe?A2=IDM;SIZ%2FAg;20130416145227%2B0000 HTH.. ------ thanks kevin.foote -- You are currently subscribed to [email protected] as: [email protected] To unsubscribe, change settings or access archives, see http://www.ja-sig.org/wiki/display/JSG/cas-user
