with?
For pac4j I think I have to change into Pac4jProperties$Saml, haven't I?
Thank you again for your reply.
BR,
F.
--Misagh
On July 11, 2017 at 12:33:04 PM, Fabio Martelli
(fabio.marte...@gmail.com <mailto:fabio.marte...@gmail.com>) wrote:
Hi All, I'm working to configure my CAS
roups.google.com/a/apereo.org/d/msgid/cas-user/027601d2fb1f%24a7f31790%24f7d946b0%24%40unicon.net
<https://groups.google.com/a/apereo.org/d/msgid/cas-user/027601d2fb1f%24a7f31790%24f7d946b0%24%40unicon.net?utm_medium=email_source=footer>.
--
Fabio Martelli
https://it.linkedin.com/pub/fa
it doesn't exist, can you give me a tip to specify a custom one?
My CN is something like as
"CN=fabio.martelli/611028099004.eHbeoxQkaF63vgZG+cX5jPQF7". I need
to extract fabio.martelli as principal name.
Thank you in advance.
BR,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabi
is currently configured)?
Thank you in advance.
BR,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
Apache Syncope PMC
http
for that).
Hi Dimitriy, it works as expected.
Thank you for your support.
BR,
F.
Cheers,
D.
From: Fabio Martelli <fabio.marte...@gmail.com>
<mailto:fabio.marte...@gmail.com>
Reply: cas-user@apereo.org <cas-user@apereo.org>
<mailto:cas-user@apereo.org>
Date: July 17, 20
Hi All, I'm working to configure my CAS 5.1.1 in order to delegate the
authentication to an external SAML2 identity provider.
I successfully configured this scenario just by adding pac4j-webflow
dependency + by including into my cas.properties file some
cas.authn.pac4j.saml[0].* properties (as
sgid/cas-user/etPan.59660db4.217acc40.56e%40unicon.net?utm_medium=email_source=footer>.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
A
r/etPan.59660db4.217acc40.56e%40unicon.net?utm_medium=email_source=footer>.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
Apache Sync
Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
Apache Syncope PMC
http://people.apache.org/~fmartelli/
--
- CAS gitter chatroom: https://gitter.im
in advance.
BR,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
Apache Syncope PMC
http://people.apache.org/~fmartelli/
--
- CAS gitter
.
In any case, what should be the best practice with CAS 5.1?
Best regards,
F.
Memcache is easy to setup.
Regards.
Le 21 juillet 2017 17:17:29 GMT+02:00, Fabio Martelli
<fabio.marte...@gmail.com> a écrit :
Hi All, I need your help to understand how I can configure my CAS
Il 24/07/2017 08:04, Fabio Martelli ha scritto:
Il 21/07/2017 18:57, Sébastien Beaudlot ha scritto:
Hi
Do you have any backend configured for ticket registry ? This may be
the easiest way to achieve your goal.
Hi Sébastien, thank you for your prompt reply.
No I have not a backend configured
to route the request correctly.
Can you suggest a solution?
Thank you in advance.
BR,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
=..
cas.webflow.encryption.keySize=16
cas.webflow.alg=AES
cas.tgc.encryptionKey=...
cas.tgc.signingKey=...
cas.tgc.cipherEnabled=true
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http
since I cannot find references about into the
documentation.
Thank you in advance for your help.
BR,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html
-Ursprüngliche Nachricht-
Von: cas-user@apereo.org [mailto:cas-user@apereo.org] Im Auftrag von Fabio
Martelli
Gesendet: Mittwoch, 23. August 2017 12:12
An: cas-user@apereo.org
Betreff: [cas-user] Key generation operations persist despite configurations
provided
Hi All, I provided
Il 12/09/2017 16:54, Fabio Martelli ha scritto:
Hi All, is there someone that can address me with this issue?
I still have trouble with kerberos authentication. Why I can
authenticate with a simple/sample java client but with Apereo CAS?
Hi All, I solved my issue: it was just
Hi All, is there a way to skip HTTP redirect deflate encoder working
with SAML2 delegated authentiation?
My CAS installation is based on 5.2.0-RC3.
Please, let me know.
BR,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio
olečnost AMI Praha a.s.
jakoukoliv smlouvu. Každá smlouva, pokud bude uzavřena, musí mít
výhradně písemnou formu.
2017-09-07 17:43 GMT+02:00 Fabio Martelli <fabio.marte...@gmail.com
<mailto:fabio.marte...@gmail.com>>:
Hi, it seems that there is a conflict with X509 webflow.
)
at
sun.security.krb5.internal.crypto.ArcFourHmac.decrypt(ArcFourHmac.java:91)
at
sun.security.krb5.internal.crypto.ArcFourHmacEType.decrypt(ArcFourHmacEType.java:100)
... 276 more
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio
Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
Apache Syncope PMC
http://people.apache.org/~fmartelli/
--
- Website: https://apereo.github.io/cas
see, this would be just a temporary workaround if there is a
solution to my problem.
Please, let me know.
Thank you in advance,
F.
- Original Message -
From: "Fabio Martelli" <fabio.marte...@gmail.com>
To: "CAS Community" <cas-user@apereo.org>
Sent: Tu
that info is
missing in my repo.
How can I solve it?
Thank you in advance.
BR,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
Il 05/09/2017 16:51, Fabio Martelli ha scritto:
Il 05/09/2017 16:47, Misagh Moayyed ha scritto:
You have done fine. The [temporary] solution to "your" problem is the
solution to "the" problem :)
:)
Turn your change into a PR, ping Jerome and send it over to pac4j.
I
Hi All, is there someone that can address me with this issue?
I still have trouble with kerberos authentication. Why I can
authenticate with a simple/sample java client but with Apereo CAS?
Please, help me if you can.
BR,
F.
Il 08/09/2017 17:18, Fabio Martelli ha scritto:
Hi, I configured my
]
at
org.springframework.expression.spel.standard.SpelExpression.getValue(SpelExpression.java:324)
~[spring-expression-4.3.10.RELEASE.jar:4.3.10.RELEASE]
at
org.thymeleaf.spring4.expression.SPELVariableExpressionEvaluator.evaluate(SPELVariableExpressionEvaluator.java:263)
~[thymeleaf-spring4-3.0.7.RELEASE.jar:3.0.7.RELEASE]
--
Fabio Martelli
https
something?
Thank you in advance for your support.
Best regards,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
Apache Syncope PMC
http
.
Is SAML2 delegated authentication available just for providers
supporting Redirect binding?
Please, let me have a feedback.
BR,
F.
cas.authn.pac4j.saml[0].destinationBinding=urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST
Il 25/08/2017 10:17, Fabio Martelli ha scritto:
Il 25/08/2017 09:13, Fabio
Hi, what are the best practices to handle a Ldap authentication exception?
I need to successfully authenticate active directory disabled users.
Where can I act?
Thank you in advance for your help.
BR,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http
Il 25/08/2017 09:13, Fabio Martelli ha scritto:
Hi All, it seems that delegated authentication that was working fine
with CAS 5.2.0-RC2 in not working anymore with 5.2.0-RC3-SNAPSHOT.
In particular, the IdP URLs shown into the login page are not correct.
Furthermore, nor the look seems
Il 28/08/2017 17:52, Fabio Martelli ha scritto:
Hi, what are the best practices to handle a Ldap authentication
exception?
I need to successfully authenticate active directory disabled users.
Where can I act?
Thank you in advance for your help.
BR,
F.
Hi, I solved my issue by providing
Hi All, with is there a way to specify AttributeConsumingServiceIndex
AuthnRequest attribute with CAS 5.2.0-RC3?
Please, let me know.
BR,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
* *binding* to send me the AuthnRequest.
Is there a way to force CAS IdP to some useful behavior?
Thank you in advance.
BR,
F.
Tom.
On Nov 14, 2017, at 8:59 AM, Fabio Martelli <fabio.marte...@gmail.com> wrote:
Hi All, I have some trouble with SAML Authentication through mod_proxy_http.
It
medium=email_source=footer>.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
Apache Syncope PMC
http://people.apache.org/~fmartelli
/cas/support/saml/web/idp/profile/AbstractSamlProfileHandlerController.java#L386-L403
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
?
Thank you in advance.
BR,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
Apache Syncope PMC
http://people.apache.org/~fmartelli
.01).
As anticipated, I would lockout a user after 3 consecutive failed login
attempts occurred within 60 seconds. Is it possible?
Thank you in advance for your help.
BR,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tir
Hi All, is there a way to force CAS 5.2.X to release principal
attributes in HTTP Header for a java-cas-client?
Thank you in advance for any help.
BR,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open
you in advance for your further reply.
BR,
F.
Ray
On Thu, 2018-01-11 at 15:13 +0100, Fabio Martelli wrote:
Hi All, is there someone that can give me some tips to implement
*temporary account lockout after 3 consecutive failed login attempts*?
It seems that authentication throttling
Hi All, is there a way to force mod_auth_cas to put retrieved principal
attributes as env variable instead of headers?
Thanks in advance for any help.
BR,
F.
--
Fabio Martelli
Tel +393204726071
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
Apache Syncope PMC
http://people.apache.org/~fmartelli/
--
- Website: https://apereo.github.io
2018 20:21:35 CET, Misagh Moayyed ha
scritto:
>If you mean the SP metadata, can you not modify that manually with the
>right URLs to match your proxy?
>
>On Wednesday, October 31, 2018 at 12:09:52 PM UTC+3:30, Fabio Martelli
>wrote:
>>
>> Dear All, I have to ask for yo
*.
Is there a way to achieve this requirement? If I have to override
something, could you address me where I have to change the behavior?
Finally, if you think it could be a bug, please let me know if, in case,
I have to provide a PR.
Thank you in advance.
Best regards,
F.
--
Fabio Martelli
Tel
for your help.
Kind regards,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html?pk_campaign=email_kwd=fm
Apache Syncope PMC
http://people.apache.org/~fmartelli
Hi All, is there a way to allow OPTIONS method requests to /cas/login?
Please, let me know.
Regards,
F.
--
Fabio Martelli
https://it.linkedin.com/pub/fabio-martelli/1/974/a44
http://blog.tirasa.net/author/fabio/index.html
Tirasa - Open Source Excellence
http://www.tirasa.net/index.html
providers?
* Is there a way to update an existing SSO session (step-up)?
Thank you in advance.
Kind regards,
F.
On Monday, May 20, 2019 at 4:09:19 AM UTC-7, Fabio Martelli wrote:
Hi All, I'd like to exploit "Ranking Providers" feature [1] in
order to implement a step-up auth
uot;rank".
Can someone address me in this direction? I didn't find any
documentation for implementing this feature.
Thank you in advance.
Regards,
F.
[1]
https://apereo.github.io/cas/5.2.x/installation/Configuring-Multifactor-Authentication.html#ranking-providers
--
Fabio Martelli
htt
Hi Kazim, can I suggest a fully completed solution based on Apache Syncope
and Apereo CAS?
Please let me know if you need more info/details
Regards,
F.
Il gio 7 mag 2020, 12:32 Kazim Koybasi ha scritto:
> Hello,
>
> We are looking for an open source or proprietary IAM solution to use in
> our
/confluence/display/SYNCOPE/%5BDISCUSS%5D+Syncope+3.0
[3] https://www.apereo.org/content/commercial-affiliates
[4] http://syncope.apache.org/professional-services
Regards.
On Thu, 7 May 2020 at 14:08, Fabio Martelli <mailto:fabio.marte...@gmail.com>> wrote:
Hi Kazim, can
49 matches
Mail list logo