https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
David Cook changed:
What|Removed |Added
CC||dc...@prosentient.com.au
--
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Text to go in the|This enhancement adds |Sponsored by PTFS Europe
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Marcel de Rooy changed:
What|Removed |Added
Blocks||21711
Referenced Bugs:
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Resolution|--- |FIXED
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Nick Clemens changed:
What|Removed |Added
Status|Passed QA |Pushed to Master
---
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Marcel de Rooy changed:
What|Removed |Added
Status|Signed Off |Passed QA
--
You are
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Status|BLOCKED |Signed Off
--- Comment
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Attachment #8|0 |1
is obsolete|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Attachment #80002|0 |1
is obsolete|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Attachment #80001|0 |1
is obsolete|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Attachment #80003|0 |1
is obsolete|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Marcel de Rooy changed:
What|Removed |Added
QA Contact|testo...@bugs.koha-communit |m.de.r...@rijksmuseum.nl
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Marcel de Rooy changed:
What|Removed |Added
Attachment #79573|0 |1
is obsolete|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #45 from Marcel de Rooy ---
Waiting for a confirm from Martin
--
You are receiving this mail because:
You are watching all bug changes.
___
Koha-bugs mailing list
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #43 from Marcel de Rooy ---
Created attachment 80002
-->
https://bugs.koha-community.org/bugzilla3/attachment.cgi?id=80002=edit
Bug 17776: (QA follow-up) Consistent regex for Plack detection
Synchronizing:
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #44 from Marcel de Rooy ---
Created attachment 80003
-->
https://bugs.koha-community.org/bugzilla3/attachment.cgi?id=80003=edit
Bug 17776: (QA follow-up) Remove shibboleth package variables
This is about $shib and
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #42 from Marcel de Rooy ---
Created attachment 80001
-->
https://bugs.koha-community.org/bugzilla3/attachment.cgi?id=80001=edit
Bug 17776: (follow-up) Add note about NativeSPSpoofChecking
Signed-off-by: Marcel de Rooy
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Marcel de Rooy changed:
What|Removed |Added
Attachment #79572|0 |1
is obsolete|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Marcel de Rooy changed:
What|Removed |Added
Status|Signed Off |BLOCKED
--
You are
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #40 from Marcel de Rooy ---
QA: Having another look now
--
You are receiving this mail because:
You are watching all bug changes.
___
Koha-bugs mailing list
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Katrin Fischer changed:
What|Removed |Added
Status|Failed QA |Signed Off
--
You are
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #39 from Martin Renvoize ---
or even PQA perhaps?
--
You are receiving this mail because:
You are watching all bug changes.
___
Koha-bugs mailing list
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Text to go in the|This enhancement adds |This enhancement adds
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Katrin Fischer changed:
What|Removed |Added
Text to go in the|This enhancement adds |This enhancement adds
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Text to go in the|This enhancement adds |This enhancement adds
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Severity|normal |enhancement
--
You are
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Text to go in the||This enhancement adds
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #38 from Katrin Fischer ---
Should we also update the wiki + the manual? At least the wiki has a page for
Shibboleth already:
https://wiki.koha-community.org/wiki/Shibboleth_Configuration
Also we should add "Text to go
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #37 from Nick Clemens ---
(In reply to Marvin Addison from comment #36)
> Is the intention to update the documentation to discuss security
> implications before closing this issue?
Yes, we are going to add the option to
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #36 from Marvin Addison ---
Is the intention to update the documentation to discuss security implications
before closing this issue?
--
You are receiving this mail because:
You are watching all bug changes.
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Attachment #68216|0 |1
is obsolete|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #34 from Martin Renvoize ---
Created attachment 79572
-->
https://bugs.koha-community.org/bugzilla3/attachment.cgi?id=79572=edit
Bug 17776: Enable Shibboleth for Plack
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #35 from Martin Renvoize ---
Created attachment 79573
-->
https://bugs.koha-community.org/bugzilla3/attachment.cgi?id=79573=edit
Bug 17776: (followup) Add note about NativeSPSpoofChecking
--
You are receiving this
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #33 from Nick Clemens ---
This patchset leaves the decision open to the user/IT staff outside of Koha. We
can either enable shib with plack, or disable plack and use environment
variables depending on their unique
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Depends on||8446
Referenced Bugs:
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #32 from Matthias Meusburger ---
About comment#27, I tried to spoof HTTP headers with firefox's "Modify Header
Value (HTTP Headers)" extension (
https://addons.mozilla.org/fr/firefox/addon/modify-header-value ) and got
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #31 from Martin Renvoize ---
(In reply to Marcel de Rooy from comment #30)
> What about the concerns listed in comment27 ?
Well, we could document that if using plack we strongly recommend you read the
documentation
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #30 from Marcel de Rooy ---
(In reply to Martin Renvoize from comment #28)
> Personally, this isn't the 100% best fix, but it's the best we can do
> without basically re-writing Koha in my opinion.. With the
>
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #29 from Matthias Meusburger ---
I completely agree with Martin's comment: this is the best we can come up with
right now.
However, I'm not a system administrator, and this is a system issue.
--
You are receiving this
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #28 from Martin Renvoize ---
(In reply to Marcel de Rooy from comment #24)
> ShibUseHeaders On|Off
> Defaults to "Off", this turns on the use of request headers to publish
> attributes to applications. Use of this option
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Blocks||19625
Referenced Bugs:
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Jonathan Druart changed:
What|Removed |Added
See Also|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Marvin Addison changed:
What|Removed |Added
CC||se...@vt.edu
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #26 from Barry Cannon ---
To reproduce the problem.
- create a koha instance with plack not enabled.
- configure shibboleth as normal and confirm login works and maps correctly to
a borrower in koha.
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #25 from Tomás Cohen Arazi ---
Can someone explain how to reproduce the problem? It seems to me that if we
need to inject ENV variables on a per-request basis we can write a Plack
middleware to take
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Marcel de Rooy changed:
What|Removed |Added
CC|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Matthias Meusburger changed:
What|Removed |Added
See Also|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #23 from Katrin Fischer ---
I had a really small conflict, but don't understand the code well enough to
risk it.
--
You are receiving this mail because:
You are watching all bug changes.
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #22 from Barry Cannon ---
I didn't have any problems applying to 16.11.13. However, I tested again and on
16.11.10 it works fine but as soon as I upgrade to 16.11.13 and re-apply the
patch the shib
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #21 from Katrin Fischer ---
Patch doesn't apply cleanly to 16.11.13 - could you help resolve?
--
You are receiving this mail because:
You are watching all bug changes.
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #20 from Matthias Meusburger ---
For information, we are currently using it successfully on 16.11.12
--
You are receiving this mail because:
You are watching all bug changes.
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Barry Cannon changed:
What|Removed |Added
CC|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Matthias Meusburger changed:
What|Removed |Added
Attachment #61426|0
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Matthias Meusburger changed:
What|Removed |Added
Status|Needs Signoff
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Matthias Meusburger changed:
What|Removed |Added
CC|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #16 from Katrin Fischer ---
What's missing here to get it moving again? I think the Plack - Shibboleth
incompatibility is going to be a real problem for users as Koha without Plack
is no fun...
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Tomás Cohen Arazi changed:
What|Removed |Added
CC|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Mason James changed:
What|Removed |Added
CC|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #15 from Martin Renvoize ---
Hmm, slightly confused by the comment then.. I thought you were finding that it
was always redirecting but that wasn't the behaviour you wanted. I'll quiz
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #14 from Mirko Tietgen ---
Very helpful link, thanks!
We are enforcing Shib login on purpose, there is not supposed to be any other
way to log in. So that does not work with the config needed
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #13 from Martin Renvoize ---
https://wiki.shibboleth.net/confluence/display/SHIB2/NativeSPApacheConfig is
very helpful for understanding what the different apache directives do ;)
--
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #12 from Martin Renvoize ---
Fixed the get_login_shib.. thanks for spotting that.. seems I'd already
corrected it locally.. Oops.
As for the apache config..
It's the `ShibRequireSession
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Attachment #60847|0
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Nick Clemens changed:
What|Removed |Added
CC|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #8 from Martin Renvoize ---
(In reply to Zeno Tajoli from comment #5)
> Do you think we can use http://www.ssocircle.com/en/portfolio/publicidp/ for
> testing ?
>
> Or is better to use
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #7 from Martin Renvoize ---
So after more local testing, i found that the plack environment could be a
little more complex than my initial tests.
This patch obsoletes the original and
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Attachment #60800|0
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #5 from Zeno Tajoli ---
Do you think we can use http://www.ssocircle.com/en/portfolio/publicidp/ for
testing ?
Or is better to use https://www.testshib.org/ ?
--
You are receiving this mail
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Zeno Tajoli changed:
What|Removed |Added
CC|
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #4 from Martin Renvoize ---
To test:
1) Enable plack
2) Alter the apache config block to ensure shibboleth is passing attributes via
headers instead of environment. (when running under
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Martin Renvoize changed:
What|Removed |Added
Status|NEW
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
--- Comment #3 from Martin Renvoize ---
Created attachment 60800
-->
https://bugs.koha-community.org/bugzilla3/attachment.cgi?id=60800=edit
Enable Shibboleth for Plack
--
You are receiving this
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Mirko Tietgen changed:
What|Removed |Added
Severity|enhancement
https://bugs.koha-community.org/bugzilla3/show_bug.cgi?id=17776
Katrin Fischer changed:
What|Removed |Added
CC|
74 matches
Mail list logo