Re: [cas-user] Encrypted database password in jdbc authn

2017-06-06 Thread Soumya Tripathy
As per the document this custom password encoder will only encode the user credentials password. But I want to decrypt the jdbc database connection password, which can be use the same encryption logic. -- - CAS gitter chatroom: https://gitter.im/apereo/cas - CAS mailing list guidelines: https:/

Re: [cas-user] Re: cas-overlay-template with 5.1.0 problems

2017-06-06 Thread Soumya Tripathy
HTTPSandIMAPS-1001.json file is the default service registry configuration file provided by cas. You can override this file by creating a same file under src/main/resources/services. I presume your client application is hosted as a http url. As you can see the default service Id is serviceI

Re: [cas-user] Re: CAS SLO issue

2017-06-06 Thread darKu
Try this one. Skip the handler steps, the idea is to inject that custom spring configuration via spring factories, afterwards you can create a new bean implementing the mentioned interface with same logic as in the default one but without any validation. Read my initial question there is mentioned

Re: [cas-user] Re: cas-overlay-template with 5.1.0 problems

2017-06-06 Thread Ashley Mort
I have not configured the ServiceRegistry at all. Do you know how to do that in the cas-overlay-template? Do I need the https://github.com/Apereo/cas-services-management-overlay? In my cas-overlay-template, there is cas-server-webapp\WEB-INF\classes\services\HTTPSandIMAPS-1001.json which con

[cas-user] Re: What's cooking in unaffiliated@cas-user

2017-06-06 Thread Uxío Prego
Have not figured yet how to work it out as a small change without breaking the tests. And I have learned to simulate `vacuumlo` in RDS using SQL, plpgsql, and shell; in the meanwhile. So it's very likely will stick in vanilla 'cas-server-core' until we phase out to CAS 5 endlich, instead. And give

Re: [cas-user] Encrypted database password in jdbc authn

2017-06-06 Thread Uxío Prego
Did not cas.authn.jdbc.query[0].passwordEncoder.type=com.example.CustomPasswordEncoder (https://apereo.github.io/cas/5.1.x/installation/Configuration-Properties.html#query-database-authentication) suit your mileage? > On 6 Jun 2017, at 19:58, Soumya Tripathy wrote: > > Hi, > Can we configure cas

[cas-user] Encrypted database password in jdbc authn

2017-06-06 Thread Soumya Tripathy
Hi, Can we configure cas to use custom encryption for database password as well? I want to use *cas.authn.jdbc.query[0].password=$EncryptedSecret$* instead of *cas.authn.jdbc.query[0].password=PlainSecret*. -- - CAS gitter chatroom: https://gitter.im/apereo/cas - CAS mailing list guidelines:

[cas-user] Re: CAS SLO issue

2017-06-06 Thread Soumya Tripathy
Thanks for the solution. Any snippet or pointer on how to implement this custom bean would be great help. On Tuesday, June 6, 2017 at 8:31:21 PM UTC+5:30, Catalin Dobrea wrote: > > Sounds as the issue described by myself here: *SLO issue with > hostname.local type url (version 5.1.0) *I have as

[cas-user] Re: CAS SLO issue

2017-06-06 Thread Catalin Dobrea
Sounds as the issue described by myself here: *SLO issue with hostname.local type url (version 5.1.0) *I have asked this question on 1st of June if you scroll down. solution was to provide a custom bean implementing *SingleLogoutServiceLogoutUrlBuilder *without URL validation. The default imp

[cas-user] Re: cas-overlay-template with 5.1.0 problems

2017-06-06 Thread Soumya Tripathy
Please check the serviceRegistry configuration for you application. If the url of the application you have integrated with cas is not matched with that of defined in service registry then it'll give the the errors. As a sample app you can use the following snippet { "@class": "org.apereo.cas

[cas-user] CAS SLO issue

2017-06-06 Thread Soumya Tripathy
Hi, I'm using cas-5.1. My cas-client is configured to use host name as the url. But when I hit the * https://192.168.2.2/**cas/logout* url, I'm getting cas logout success page but the SLO is not happening. I'm still able to access my client-app. In cas logs I'm getting the following errors. 20

[cas-user] Re: [CAS 5.0.x] json and inmemory all together in

2017-06-06 Thread Didier Capdevielle
Sorry, bad manip' I follow. Le mardi 6 juin 2017 16:20:22 UTC+2, Didier Capdevielle a écrit : > > Hi all, > Maybe is there something i don't understand but ... > > I add cas-server-support-json-service-registry dependency. > I add parameters in cas.properties : > ... > ## Service Registry > # cas

[cas-user] [CAS 5.0.x] json and inmemory all together in

2017-06-06 Thread Didier Capdevielle
Hi all, Maybe is there something i don't understand but ... I add cas-server-support-json-service-registry dependency. I add parameters in cas.properties : ... ## Service Registry # cas.serviceRegistry.watcherEnabled=true OR uncommented # cas.serviceRegistry.repeatInterval=12 OR uncom

[cas-user] cas-overlay-template with 5.1.0 problems

2017-06-06 Thread Ashley Mort
I have been using https://github.com/apereo/cas-overlay-template which used CAS 5.0.6 which worked great for me. However when I pull the update from 5/31/17 which bumps the CAS version to 5.1.0, I get the following new problems: 1- "Application Not Authorized to Use CAS" for all my apps 2- "Yo

[cas-user] Re: CAS Management Webapp v5 + LDAP Authorization

2017-06-06 Thread Olivier Lamarche
I can log in my mgmt webapp base on my admin role using ldap group, I don't know why I have to set rolePrefix and groupPrefix both to : ROLE_, but its working! here is my config : *cas.mgmt.adminRoles=ROLE_ADMIN,ROLE_IDMADMIN# Attributes that you wish to resolve for the

[cas-user] Re: CAS Management Webapp v5 + LDAP Authorization

2017-06-06 Thread Jugurtha OURLISSENE
Hello, I encounter the same problem with CAS 5.0.4. Have you solved the problem? could you help me ? Le lundi 21 novembre 2016 10:34:28 UTC+1, Ludovic Senecaux a écrit : > > Hy, > > I would like to configure the new mgmt webapp (v5) authorization through > LDAP like in CAS v4.2.x. > I have a LDA

Re: [cas-user] SPNEGO Configuration

2017-06-06 Thread Petr Gašparík - AMI Praha a . s .
Hi, better *append *whole log file. P. -- s pozdravem Petr Gašparík solution architect gsm: [+420] 603 523 860 e-mail: petr.gaspa...@ami.cz AMI Praha a.s. Pláničkova 11 162 00 Praha 6 tel.: [+420] 274 783 239 web: www.ami.cz [image: AMI Praha a.s.] [image: AMI Praha a.s.]