On Wed, Oct 16, 2013 at 5:26 AM, Hardik J Sheth <[email protected]> wrote: > Thanks Jerome for your reply. > > Will CAS 4.0 release have full SAML 2.0 capability?
What do you mean by "full SAML2.0 capability"? If you mean complete coverage of the SAML2 specification, than that answer is a definite no. If you mean ability to do SAML2 Web Browser SSO Profile, than the answer is at least enough to interop with Google Apps and some others. I should point out that it is unclear if there is any complete implementation of the "full" SAML2 spec, as even Shibboleth skips some of it. > > Will it be possible to do Federated SSO using CAS 4.0? What do you mean by "Federated SSO"? If you mean WebSSO across domains, then the answer is yes. CAS has always been able to do WebSSO across domains and CAS4 doesn't change that. If you mean WebSSO across domains via SAML, see above about limited SAML2 Web Browser SSO Profile support. If you mean consuming aggregated SAML metadata to order to participate in a federation like InCommon, the answer is no. You are better off with Shibboleth or better yet CAS/Shibboleth. Best, Bill > > > -- > You are currently subscribed to [email protected] as: [email protected] > To unsubscribe, change settings or access archives, see > http://www.ja-sig.org/wiki/display/JSG/cas-user -- You are currently subscribed to [email protected] as: [email protected] To unsubscribe, change settings or access archives, see http://www.ja-sig.org/wiki/display/JSG/cas-user
