Can anyone offer advice on how to configure CAS for case-sensitive userids?  
The current behavior of CAS, server version 3.2.1, is to accept any combination 
of uppercase and lowercase letters that makeup the userid.  For example, 
"admin" is treated the same as "AdMIn" or "adMIN" when providing a 
username/password and will be authenticated, even though only the "admin" is 
stored in the LDAP.  The desired behavior is to treat "admin", "AdMIn", and 
"adMIN" as three separate userids and reject a login attempt with the wrong 
case.

>From a little research, it appears that it may be a matter of configuring the 
>LDAP handler bean with the right filter.  The bean is currently configured as 
>follows:

                                <bean id="ldapHandler" 
class="org.jasig.cas.adaptors.ldap.BindLdapAuthenticationHandler">
                                        <property name="filter" value="uid=%u" 
/>
                                       ...
                                </bean>

Can anyone provide the proper way to configure this bean for case-sensitivity 
or is there something else that needs to be done?

Thanks!
Barry Silk

-- 
You are currently subscribed to cas-user@lists.jasig.org as: 
arch...@mail-archive.com
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to