[cas-user] CAS 5.2.2 SAML IdP vs. Workday

2018-03-13 Thread curryd
We are trying to configure our Workday Preview tenant to authenticate via SAML2 to a CAS 5.2.2 IdP. In the management webapp, we have defined a "SAML2 Service Provider" service. The EntityID is set to: https://impl.workday.com/x which matches the EntityID in the SP's metadata. When we

Re: [cas-user] Help with LDAP auth

2018-03-13 Thread Марат Бралиев
how best practice to check member of specific group? check in LDAP search query, or use some CAS (or ldaptive) handler, and check member of group after simple search? Does CAS support such handler? -- - Website: https://apereo.github.io/cas - Gitter Chatroom: https://gitter.im/apereo/cas -

Re: [cas-user] Help with LDAP auth

2018-03-13 Thread Марат Бралиев
Cas logs))) I undestood you... I will see ldap logs in AD server -- - Website: https://apereo.github.io/cas - Gitter Chatroom: https://gitter.im/apereo/cas - List Guidelines: https://goo.gl/1VRrw7 - Contributions: https://goo.gl/mh7qDG --- You received this message because you are subscribed to

Re: [cas-user] Help with LDAP auth

2018-03-13 Thread Ray Bon
Is that the CAS log or the LDAP server log? On Tue, 2018-03-13 at 11:00 -0700, Марат Бралиев wrote: I attached ldap log in my question. -- Ray Bon Programmer analyst Development Services, University Systems 2507218831 | CLE 019 | r...@uvic.ca -- - Website: https://apereo.github.io/cas -

Re: [cas-user] Help with LDAP auth

2018-03-13 Thread Марат Бралиев
I attached ldap log in my question. -- - Website: https://apereo.github.io/cas - Gitter Chatroom: https://gitter.im/apereo/cas - List Guidelines: https://goo.gl/1VRrw7 - Contributions: https://goo.gl/mh7qDG --- You received this message because you are subscribed to the Google Groups "CAS

Re: [cas-user] JIRA CAS configuration - is it possible to fallback to authentication against internal directory?

2018-03-13 Thread Ray Bon
John, Moodle has this as an option. If multiple login systems are available, Moodle will redirect to a page where the user can select one. You could add some smarts to Jira's login page to get similar behaviour. Ray On Tue, 2018-03-13 at 10:32 -0700, John Tabet wrote: Hello all, I've

[cas-user] JIRA CAS configuration - is it possible to fallback to authentication against internal directory?

2018-03-13 Thread John Tabet
Hello all, I've searched in these forums a bit, but couldn't find an answer and was hoping if someone could tell me if something might be possible. I've configured JIRA CAS authentication more or less using the instructions here: https://github.com/apereo/java-cas-client#atlassian-integration

Re: [cas-user] How is CAS 4.2.1 configured for LPPE ?

2018-03-13 Thread Ray Bon
It could be that error code is not identified in LPPE default settings. Back in 3.5.2.1 we had to identify the error codes and what should happen for each. I have not revisited LPPE since we upgraded. Ray On Tue, 2018-03-13 at 09:00 -0700, casconfiguration casconfiguration wrote: Trying to

Re: [cas-user] Help with LDAP auth

2018-03-13 Thread Ray Bon
Maybe your ldap logs will have more info. Ray On Tue, 2018-03-13 at 04:39 -0700, Марат Бралиев wrote: I need to check user password and member of specific group: I have CAS 5.2.* My config file: cas.authn.ldap[0].type=AUTHENTICATED cas.authn.ldap[0].ldapUrl=ldap://example.com

[cas-user] How is CAS 4.2.1 configured for LPPE ?

2018-03-13 Thread casconfiguration casconfiguration
Trying to get CAS version 4.2.1 to recognise and respond correctly to messages from an AD server (LPPE)such as the password must change or the account is locked. >From the CAS log file it is reporting the error 773 for changing a password but it interprets it as an invalid authentication

[cas-user] Trusted Device/Browser failing in db storage -Data too long

2018-03-13 Thread Tim Tyler
CAS experts, We are running CAS 5.2. We MFA working fine with Google Authenticator which is stored in an MFA database. We are now trying to add in the Trusted device configuration. So we created a new database, mfatrusted. I assume we should not use the same database that we created for

[cas-user] Help with LDAP auth

2018-03-13 Thread Марат Бралиев
I need to check user password and member of specific group: I have CAS 5.2.* My config file: cas.authn.ldap[0].type=AUTHENTICATED cas.authn.ldap[0].ldapUrl=ldap://example.com cas.authn.ldap[0].useSsl=false cas.authn.ldap[0].bindDn=cn=portal_manager,ou=System Accounts,dc=example,dc=com

[cas-user] Can CAS intergrate with other 4A system( Oracle4A /OAM/)?

2018-03-13 Thread zl anson
Hi We are using CAS system in our current project, but we are ordered to intergrate our system to another system, that system is used Oracle'IDM 4A system, the "account " part will managed by the Oracle IDM, but for SSO and authorized part, will process by CAS, Here is our