Re: [cas-user] Strange delegated SAML Error on RHEL (CAS6.4.6.6)

2023-10-24 Thread Ray Bon
Yan, Does samlkeystore exist and is writable (same for path to sp metadata)? But there should be no metadata file when cas starts if you want it to be generated. You can also create metadata manually, see https://www.samltool.com/sp_metadata.php Ray On Tue, 2023-10-24 at 13:15 -0700, Yan

[cas-user] Strange delegated SAML Error on RHEL (CAS6.4.6.6)

2023-10-24 Thread Yan Zhou
Hi there, I am using CAS 6.4.6.6 for delegated authN using SAML, CAS delegates authN to Okta. I run into a strange error, on Windows, this works fine (i.e., once I point to /cas/login, it generates SP metadata and keystore), but on Linux, CAS does not generate SP meta data and SP keystore. I

[cas-user] Re: CAS delegated auth - AzureAD

2023-10-24 Thread Pablo Vidaurri
Wow, perfect timing. I was about to ask if the discovery URL is the only URL that needs to be allowed thru our firewall because fudging out the one in my cas.properties did not seem to make a difference. Thanks for pointing out it is hardcoded and based on tenant id. It explains why it's

[cas-user] Re: MFA with Yubikey and WebAuthn

2023-10-24 Thread Hartmut Trüe
John, at the Moment it is 6.6.13 ... and not working. I don't know what else is missing. Regards, Hartmut John schrieb am Donnerstag, 19. Oktober 2023 um 14:53:01 UTC+2: > Sounds like you are not on lastest or at least 6.6.10. There was a bug in > versions previous > > On Thursday, October 19,

Re: [cas-user] CAS6 SAML usernameAttribute

2023-10-24 Thread atilling
Yes the service manager web app, built from curl https://casinit.herokuapp.com/starter.tgz -d type=cas-management-overlay -d baseDir=cas-sm | tar -xzvf - It was the json created by the web app that I modified to change the attribute. On Monday, October 23, 2023 at 10:54:03 PM UTC-4 Dmitriy