At Rutgers we've used CAS as a Web Service (using xFire or Axis) and Acegi on the "client" web services to protect then.  The Acegi documentation has information on securing an application so that you can present a CAS ticket to it as a password.



On 9/26/06, Smith, Matt <[EMAIL PROTECTED]> wrote:
All-

  I am trying to locate docs of how to use CAS with my Web Services.  Is
there such a document, or collection of examples?

  Also, let me check my understanding of the information I have found -
it appears that I can authenticate to my SOAP Web Service with CAS.  I
assume this occurs by having my SOAP Client authenticate (somehow -
in-band function params, out-of-band SOAP headers?) to the CAS server,
obtain a ST, pass this ST to my SOAP Service (somehow, again as a param
to my service or in a header?), which validates against my CAS server as
usual.

  Can someone verify or correct my understanding, and fill in the
"somehow"s for me, possibly by simply pointing me to existing
documentation/examples that elude me?

Thanks all,
-Matt


_______________________________________________
Yale CAS mailing list
[email protected]
http://tp.its.yale.edu/mailman/listinfo/cas




_______________________________________________
Yale CAS mailing list
[email protected]
http://tp.its.yale.edu/mailman/listinfo/cas

Reply via email to