I have limited knowledge regarding CAS as I am new to the CAS world.
But from what others have told me - it sounds like stored cookies or history 
cache needs to be set to clear automatically upon exiting the service or after 
a certain period of time has lapsed.

Due to students having to manually 'log off' the PC's in our labs we had to set 
CAS to not be dependent on a web browser closing to clear the cookies/history 
in CAS or a PC being logged off. As so many students just log off the site and 
then leave the browser and PC still up and running. Thus allowing themselves 
and/or other students who come along behind them to access their accounts 
without having to re-enter credentials.

I'd be more than happy to attempt to help you.

Constance

From: Richard Everett [mailto:[email protected]]
Sent: Wednesday, February 05, 2014 12:13 PM
To: [email protected]
Cc: 'Everett,Richard'
Subject: [cas-user] Unexpected auto login with CAS

Hello,

Are using CAS 3.5.2 and have an issue whereby users can login without entering 
their credentials, as follows:


*         User logs in (entering their credentials)

*         User logs out

*         User goes to log in again, but instead of being presented with the 
CAS login screen they get logged back in

This is happening very occasionally for our users, but on one PC in IE8 it 
happens every time for any user who logs in.

We have studied the HTTP traffic when we see the issue on this one PC and 
cannot see anything significant that would help us figure out what is going on.

In case it is relevant, our application is based on .NET, and we're using the 
.NET CAS Client.

Can anyone suggest what might be amiss?

Kind regards,

Richard

--
You are currently subscribed to 
[email protected]<mailto:[email protected]> as: 
[email protected]<mailto:[email protected]>
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

-- 
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to