On Wed, Aug 29, 2018 at 9:01 AM Poteat, William D. <[email protected]>
wrote:

> I have a CAS Authentication problem.
>

What version of Guacamole are you using?  Are all of your extensions the
same version?


>
>
> Using the default guacadmin user name and password
>
> I can navigate through our *cas-authorization-endpoint*, where the user
> (guacadmin) logs onto our CAS server, then to the *cas-redirect-uri* (the
> guacamole app  https://host.net.org/guacamole).
>
> So that part is working.
>
>
>
> However, the user name *guacadmin* is shown in the upper right of the
> guacamole home page but the associated connections are not shown and all of
> the guacadmin capabilities such as creating connection, adding a user are
> missing.
>

So you have a guacadmin user that logs into CAS?  When you created the JDBC
portion, did you import both of the SQL schema files - there are two, one
for the base schema, and one for configuring the guacadmin account.  Can
you verify that you imported both when creating the database?

Also, if you disable the CAS authentication module and just log in as
"guacadmin", does everything work correctly?


>
>
> My gut tells me that somehow a the password or something that allows
> guacamole to pull the guacadmin user data from the database is missing.
>
>
>
> Also, the *guacadmin* user cannot logout.
>
> the brief message   “Please wait redirecting to CAS authentication”
>
> is displayed before returning to the Guacamole / guacadmin home page.
>

This is a known issue - Single Sign Out is not implemented in any of the
SSO modules at this time.  There are JIRA Issues created for both CAS and
OpenID, it just hasn't been implemented, yet.


>
>
> I must close the browser window to very ungracefully exit Guacamole.
>
>
>
> I hope this is the proper way to submit a Question.  Please point me to
> any previous message threads on this subject.
>

Yep, this is correct.

-Nick

>

Reply via email to