Re: [cas-user] Re: Access Denied with CAS Service Management WebApp

2017-08-12 Thread Brian Gibson
t;bgibson" ] ], } }, On 8/10/2017 3:24 AM, Bergner, Arnold wrote: Hi there, it seems to me your properties file location might be wrong. At least, there’s no C: in there: cas.mgmt.userPropertiesFile=file:/etc/cas/config/users.properties Maybe you also need windows notation

[cas-user] Re: Access Denied with CAS Service Management WebApp

2017-08-09 Thread Brian Gibson
ibuteReleasePolicy", "allowedAttributes" : { "@class" : "java.util.TreeMap", "sn" : "sn", "cn" : "cn", "mail" : "EmailAddress", "displayname" : "FullName"

[cas-user] Access Denied with CAS Service Management WebApp

2017-08-09 Thread Brian Gibson
Hi All, Be gentle, I'm a sys admin, not a Java expert ;-) Running Tomcat 9 on Windows 2012 R2 Server. Running CAS 5.1.2 using the War Overlay method and I have it authenticating against Active Directory and it recognizes services that I define in .json files. I'm trying to get the CAS

Re: [cas-user] Help with CAS 5.1.3 & LDAP

2017-08-16 Thread Brian Gibson
I don't know if this is 100% correct but my ldap settings are in my cas.properties file, I do not have an ldap.properties file. On 8/16/2017 3:21 PM, Chris Peck wrote: I cannot for the life of me figure out what I need to get my dev CAS instance to talk to LDAP. When it's running and I try to

Re: [cas-user] CAS 3.5.3 not releasing AD attributes to version 3 WordPress CAS plugin

2017-06-20 Thread Brian Gibson
server version 3, which is a) "end of > life" and b) does not have CAS protocol version 3 implemented. > > HTH, > D. > >> On Jun 19, 2017, 15:22 -0400, Brian Gibson >> <gibson_br...@wheatoncollege.edu>, wrote: >> Hi All, >> >&g

[cas-user] CAS 3.5.3 not releasing AD attributes to version 3 WordPress CAS plugin

2017-06-19 Thread Brian Gibson
Hi All, Be gentle with me I'm not a CAS guru :-) We are running CAS 3.5.3 and our web team is trying to configure a WordPress plugin for CAS version 3 to authenticate users and receive AD attributes. If they switch the CAS plugin to CAS version 2 the user authenticates fine. When they test

Re: [cas-user] Avoid default services recreation cas overlay

2017-10-10 Thread Brian Gibson
I got rid of /one /of those .json files from appearing by adding the bolded section to my pom.xml file. I couldn't figure out the XML syntax to try and get more than one .json file from appearing so I have a scheduled task in the CAS 5 Windows server that nukes the other one when it sees it

Re: [cas-user] making an extra LDAP attribute visible via CAS

2017-09-26 Thread Brian Gibson
We are working towards this as well but do not have it in place yet. I think it will be a two step process. Inside the C:\etc\cas\config\cas.properties files in the LDAP section you need to tell it what attributes from LDAP you want to pull

[cas-user] Call additional URL on service logout

2018-08-07 Thread Brian Gibson
One of our portal's subapps doesn't get logged out when the portal calls the /cas/logout URL on our CAS 5.1.2 server, that subapp has it's own logout URL. Is there a way within CAS 5 to have the client call a URL in the background as they log out of a service? Thanks! -- - Website:

Re: [cas-user] Call additional URL on service logout

2018-08-07 Thread Brian Gibson
e-endpoint-for-logout-requests <https://apereo.github.io/cas/5.3.x/installation/Logout-Single-Signout.html#service-endpoint-for-logout-requests> Thanks. Best regards, Jérôme On Tue, Aug 7, 2018 at 2:33 PM, Brian Gibson <mailto:gibson_br...@wheatoncollege.edu>> wrote: On

[cas-user] Point CAS apps at different Duo protected applications (group policies)

2018-09-07 Thread Brian Gibson
Hi all, We have Duo working in our test CAS 5.1.2 environment. Now we'd like to point different CAS-protected services at different Duo Protected Applications so we can set different group policies for each. I created 2 CAS applications inside Duo's admin portal, I called them "CAS

Re: [cas-user] Point CAS apps at different Duo protected applications (group policies)

2018-09-07 Thread Brian Gibson
wrote: This PR https://github.com/apereo/cas/pull/3498, against 5.3.x addresses this issue. On Fri, Sep 7, 2018 at 11:42 AM Brian Gibson <mailto:gibson_br...@wheatoncollege.edu>> wrote: Hi all, We have Duo working in our test CAS 5.1.2 environment. Now we'd like to point

Re: [cas-user] masquerade as different user

2019-01-22 Thread Brian Gibson
Also keep in mind that not all properties can be applied on the fly. Some changes in the cas.properties file require a restart. -dirk On Thu, Jan 10, 2019 at 2:08 PM Brian Gibson <mailto:gibson_br...@wheatoncollege.edu>> wrote: Hi all, Couple of questions regardin

Re: [cas-user] masquerade as different user

2019-01-23 Thread Brian Gibson
de 'cas-server-support-surrogate-webflow' in your dependencies, right? While you don't need the REST dependency, you do need that one. -dirk On Tue, Jan 22, 2019 at 4:30 PM Brian Gibson <mailto:gibson_br...@wheatoncollege.edu>> wrote: Hi everyone, Dirk, thanks for al

Re: [cas-user] masquerade as different user

2019-01-10 Thread Brian Gibson
CAS audit log includes the surrogate authorization details, which was important for our ISO. There were some bumps and changes related to attribute release in the 5.3.x releases, so beware. -dirk On Wed, Jan 9, 2019 at 4:40 PM Brian Gibson <mailto:gibson_br...@wheatoncollege.edu>> w

[cas-user] masquerade as different user

2019-01-09 Thread Brian Gibson
Hi all, Is there a way within a service entry in CAS 5.1 to say that if person A logs in successfully, send them to the service as person B? I checked the 5.1 service-related docs but couldn't find anything. Thanks, Brian -- - Website: https://apereo.github.io/cas - Gitter Chatroom:

Re: [cas-user] masquerade as different user

2019-01-09 Thread Brian Gibson
? -- DAVID A. CURRY, CISSP *DIRECTOR OF INFORMATION SECURITY* THE NEW SCHOOL• INFORMATION TECHNOLOGY 71 FIFTH AVE., 9TH FL., NEW YORK, NY 10003 +1 212 229-5300 x4728 • david.cu...@newschool.edu <mailto:david.cu...@newschool.edu> On Wed, Jan 9, 2019 at 2:48 PM Brian Gibson <mailto: