> During my experiments with the X509 CAS support, I experimented with the use
> of X509CertificateCredentialsToIdentifierPrincipalResolver to retreive X509
> certificate fields.

There are a number of problems with that component and it has been
deprecated for some time:

https://issues.jasig.org/browse/CAS-844

The easiest way to get the CN from the subject DN is to use
X509CertificateCredentialsToSubjectPrinciplalResolver as follows:

<bean 
class="org.jasig.cas.adaptors.x509.authentication.principal.X509CertificateCredentialsToSubjectPrinciplalResolver"
  p:descriptor="$CN" />

M

-- 
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-dev

Reply via email to