Re: Single Sign-On (SSO)

2012-05-31 Thread Nathan Aker
Yes, this can be done.  Column Technologies helped us set this up, they have a 
packaged custom plugin they've written to perform the pass-through SSO solution 
which basically gets applied to your Miditer server and intercepts traffic to 
the web server and authenticates to your Identity Mgt solution then passes you 
through into Remedy. 

The licensing does not change with an SSO solution, based on function the user 
would still need to the appropriate license for the functionality used.   If 
you are talking about the basic Requester Console, this interface does not 
require a license,  but if you are referring to the full Service Request 
Management module, that is a licensed component and they would require a 
license.

Hope this helps, contact Column Technologies (www.columnit.com) for info on 
their SSO solution, they were able to get us up and running in short order on 
it.   Thanks.  Nate.

Nathan Aker
ITSM Solution Architect
McAfee, Inc.

-Original Message-
From: Action Request System discussion list(ARSList) 
[mailto:arslist@ARSLIST.ORG] On Behalf Of Team Remedy
Sent: Thursday, May 31, 2012 4:31 AM
To: arslist@ARSLIST.ORG
Subject: Single Sign-On (SSO)

Hi all,
i would like to log to Requester Console bypassing the login page of Mid Tier. 

the User could access to the system using his Web portal and i try to interface 
the RQC by Single Sign-On (SSO) of BMC Remedy.
Is it possible ?

i don't understand if Single Sign-On (SSO) needs of regular license by BMC !
any Idea ?

can you help me to solve this requirement ?

thx
Peter

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org attend wwrug12 
www.wwrug12.com ARSList: "Where the Answers Are"

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
attend wwrug12 www.wwrug12.com ARSList: "Where the Answers Are"


Re: Single Sign-On (SSO)

2012-06-01 Thread Team Remedy
John,
thanks alot for your suggest !

You say to use BMC community code, but where i can find this code ?
i would like to realize the solution myself without include other people (i.e. 
Column or similar).

can you help me to indicate the 'right street' ? 

i try to read 'Integrating BMC® Remedy®Action Request System®
with Single Sign-On (SSO) Authentication Systems and
Other Client-Side Login Intercept Technologies' 

but i understand just a little !

thx
Peter

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
attend wwrug12 www.wwrug12.com ARSList: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-18 Thread Jiri Pospisil
++
Please Read The Disclaimer At The Bottom Of This Email
++

Kevin,

I would look at the code in your custom authenticator jar file located on the 
mid tier and see how it works out the user name.
It seems that after the migration it cannot get the user name.

Hope this gets you some idea.

Jiri Pospisil

IT Services
LCH.Clearnet



From: Action Request System discussion list(ARSList) [mailto:[EMAIL PROTECTED] 
On Behalf Of Begosh, Kevin
Sent: 17 November 2008 23:11
To: arslist@ARSLIST.ORG
Subject: Single Sign On (SSO) Issue

**
I am having an issue with Single Sign On.  I have a current environment for the 
mid tier, IIS, Servlet Exec where SSO works.  We are looking to change from 
Servlet to Tomcat on our mid tier servers.  In doing so it looks like SSO is 
not working anymore.  SSO is not "Supported" by BMC from what I have been told 
so my options are limited.  I was told by BMC that there should be no issue 
changing what we have with SSO from Servlet exec to tomcat.  We are on mid tier 
7.1 patch 4, windows 2003, IIS.  All the configurations on the AR Server is 
fine because it was working before.  When I load the mid tier the log in screen 
pops up and no visible errors appear.  From logging I am getting the following 
issues

- Trying to load configuration arsys_api.xml
- Could not load optional configuration arsys_api.xml
- Trying to load configuration default.xml
- constructor(arcatalog)
- Trying to load configuration arsys_api.xml
- Could not load optional configuration arsys_api.xml
- Trying to load configuration default.xml
- Connects to ARServer *servername* through [EMAIL PROTECTED]
- Api source is identified as: AP675689916919Q6UhSQhwYAAAKQAA
SSO: Initialization: Version 2.05e
SSO: Property values were loaded.
usermethod:remoteuser
usercase:lower
removedomain:T
headername:
attname:
authmethod:default
authcustom:
debuglogging:T
- Unable to find required classes (javax.activation.DataHandler and 
javax.mail.internet.MimeMultipart). Attachment support is disabled.
SSO ERROR: RemoteUser name is null or empty. Using default login page
- Connects to ARServer *servername* through [EMAIL PROTECTED]
SSO ERROR: RemoteUser name is null or empty. Using default login page
SSO ERROR: RemoteUser name is null or empty. Using default login page

it also makes reference to the custom authenticator failed, and that it is 
using the default one.

And for the sake of the email I removed my server name under *servername*, so 
that part was just my servers name.

Kevin Begosh, RSP
Tech Ops
Enterprise Business Services
301-791-3540 Phone
410-422-3623 Cell
[EMAIL PROTECTED]

__Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are" html___

*

This email is intended for the named recipient(s) only. Its contents are  
confidential and may only be retained by the named recipient(s) and may only be 
copied or disclosed with the consent of LCH.Clearnet Limited.   If you are not 
an intended recipient please delete this e-mail and notify [EMAIL PROTECTED]

The contents of this email are subject to contract in all cases, and 
LCH.Clearnet Limited makes no contractual commitment save where confirmed by 
hard copy.  LCH.Clearnet Limited accepts no liability, including liability for 
negligence, in respect of any statement in this email.

LCH.Clearnet Limited, Registered Office: Aldgate House, 33 Aldgate High Street, 
London EC3N 1EA.Recognised as a Clearing House under the Financial Services 
& Markets Act 2000. Reg in England No.25932 
Telephone: +44 20 7426 7000  Internet: http://www.lchclearnet.com

*


___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-18 Thread Begosh, Kevin
well according to BMC the mid tier plug-in jar file I have should work
for both, it is not specific to Tomcat or Servlet Exec
 

Kevin Begosh, RSP

Tech Ops

Enterprise Business Services

301-791-3540 Phone

410-422-3623 Cell

[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]> 

 



From: Action Request System discussion list(ARSList)
[mailto:[EMAIL PROTECTED] On Behalf Of Jiri Pospisil
Sent: Tuesday, November 18, 2008 4:20 AM
To: arslist@ARSLIST.ORG
Subject: Re: Single Sign On (SSO) Issue


** 

++

Please Read The Disclaimer At The Bottom Of This Email

++

 

Kevin,

 

I would look at the code in your custom authenticator jar file located
on the mid tier and see how it works out the user name. 

It seems that after the migration it cannot get the user name. 

 

Hope this gets you some idea.

 

Jiri Pospisil

 

IT Services 
LCH.Clearnet



 

 

From: Action Request System discussion list(ARSList)
[mailto:[EMAIL PROTECTED] On Behalf Of Begosh, Kevin
Sent: 17 November 2008 23:11
To: arslist@ARSLIST.ORG
Subject: Single Sign On (SSO) Issue

 

** 

I am having an issue with Single Sign On.  I have a current environment
for the mid tier, IIS, Servlet Exec where SSO works.  We are looking to
change from Servlet to Tomcat on our mid tier servers.  In doing so it
looks like SSO is not working anymore.  SSO is not "Supported" by BMC
from what I have been told so my options are limited.  I was told by BMC
that there should be no issue changing what we have with SSO from
Servlet exec to tomcat.  We are on mid tier 7.1 patch 4, windows 2003,
IIS.  All the configurations on the AR Server is fine because it was
working before.  When I load the mid tier the log in screen pops up and
no visible errors appear.  From logging I am getting the following
issues

 

- Trying to load configuration arsys_api.xml
- Could not load optional configuration arsys_api.xml
- Trying to load configuration default.xml
- constructor(arcatalog)
- Trying to load configuration arsys_api.xml
- Could not load optional configuration arsys_api.xml
- Trying to load configuration default.xml
- Connects to ARServer *servername* through
[EMAIL PROTECTED]
- Api source is identified as: AP675689916919Q6UhSQhwYAAAKQAA
SSO: Initialization: Version 2.05e
SSO: Property values were loaded. 
usermethod:remoteuser
usercase:lower
removedomain:T
headername:
attname:
authmethod:default
authcustom:
debuglogging:T
- Unable to find required classes (javax.activation.DataHandler and
javax.mail.internet.MimeMultipart). Attachment support is disabled.
SSO ERROR: RemoteUser name is null or empty. Using default login page
- Connects to ARServer *servername* through
[EMAIL PROTECTED]
SSO ERROR: RemoteUser name is null or empty. Using default login page
SSO ERROR: RemoteUser name is null or empty. Using default login page

 

it also makes reference to the custom authenticator failed, and that it
is using the default one.

 

And for the sake of the email I removed my server name under
*servername*, so that part was just my servers name.

 

Kevin Begosh, RSP

Tech Ops

Enterprise Business Services

301-791-3540 Phone

410-422-3623 Cell

[EMAIL PROTECTED]

 

__Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"
html___ 


*

 

This email is intended for the named recipient(s) only. Its contents are
confidential and may only be retained by the named recipient(s) and may
only be copied or disclosed with the consent of LCH.Clearnet Limited. If
you are not an intended recipient please delete this e-mail and notify
[EMAIL PROTECTED]

 

The contents of this email are subject to contract in all cases, and
LCH.Clearnet Limited makes no contractual commitment save where
confirmed by hard copy. LCH.Clearnet Limited accepts no liability,
including liability for negligence, in respect of any statement in this
email.

 

LCH.Clearnet Limited, Registered Office: Aldgate House, 33 Aldgate High
Street, London EC3N 1EA. Recognised as a Clearing House under the
Financial Services & Markets Act 2000. Reg in England No.25932 

Telephone: +44 20 7426 7000 Internet: http://www.lchclearnet.com

 


*

 

__Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"
html___ 

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-18 Thread Begosh, Kevin
Also the reason I think this is failing is because for some reason with
Tomcat it is not get the user name from IIS.  I do have integrated
windows authentication on.
 

Kevin Begosh, RSP

Tech Ops

Enterprise Business Services

301-791-3540 Phone

410-422-3623 Cell

[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]> 

 



From: Action Request System discussion list(ARSList)
[mailto:[EMAIL PROTECTED] On Behalf Of Jiri Pospisil
Sent: Tuesday, November 18, 2008 4:20 AM
To: arslist@ARSLIST.ORG
Subject: Re: Single Sign On (SSO) Issue


** 

++

Please Read The Disclaimer At The Bottom Of This Email

++

 

Kevin,

 

I would look at the code in your custom authenticator jar file located
on the mid tier and see how it works out the user name. 

It seems that after the migration it cannot get the user name. 

 

Hope this gets you some idea.

 

Jiri Pospisil

 

IT Services 
LCH.Clearnet



 

 

From: Action Request System discussion list(ARSList)
[mailto:[EMAIL PROTECTED] On Behalf Of Begosh, Kevin
Sent: 17 November 2008 23:11
To: arslist@ARSLIST.ORG
Subject: Single Sign On (SSO) Issue

 

** 

I am having an issue with Single Sign On.  I have a current environment
for the mid tier, IIS, Servlet Exec where SSO works.  We are looking to
change from Servlet to Tomcat on our mid tier servers.  In doing so it
looks like SSO is not working anymore.  SSO is not "Supported" by BMC
from what I have been told so my options are limited.  I was told by BMC
that there should be no issue changing what we have with SSO from
Servlet exec to tomcat.  We are on mid tier 7.1 patch 4, windows 2003,
IIS.  All the configurations on the AR Server is fine because it was
working before.  When I load the mid tier the log in screen pops up and
no visible errors appear.  From logging I am getting the following
issues

 

- Trying to load configuration arsys_api.xml
- Could not load optional configuration arsys_api.xml
- Trying to load configuration default.xml
- constructor(arcatalog)
- Trying to load configuration arsys_api.xml
- Could not load optional configuration arsys_api.xml
- Trying to load configuration default.xml
- Connects to ARServer *servername* through
[EMAIL PROTECTED]
- Api source is identified as: AP675689916919Q6UhSQhwYAAAKQAA
SSO: Initialization: Version 2.05e
SSO: Property values were loaded. 
usermethod:remoteuser
usercase:lower
removedomain:T
headername:
attname:
authmethod:default
authcustom:
debuglogging:T
- Unable to find required classes (javax.activation.DataHandler and
javax.mail.internet.MimeMultipart). Attachment support is disabled.
SSO ERROR: RemoteUser name is null or empty. Using default login page
- Connects to ARServer *servername* through
[EMAIL PROTECTED]
SSO ERROR: RemoteUser name is null or empty. Using default login page
SSO ERROR: RemoteUser name is null or empty. Using default login page

 

it also makes reference to the custom authenticator failed, and that it
is using the default one.

 

And for the sake of the email I removed my server name under
*servername*, so that part was just my servers name.

 

Kevin Begosh, RSP

Tech Ops

Enterprise Business Services

301-791-3540 Phone

410-422-3623 Cell

[EMAIL PROTECTED]

 

__Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"
html___ 


*

 

This email is intended for the named recipient(s) only. Its contents are
confidential and may only be retained by the named recipient(s) and may
only be copied or disclosed with the consent of LCH.Clearnet Limited. If
you are not an intended recipient please delete this e-mail and notify
[EMAIL PROTECTED]

 

The contents of this email are subject to contract in all cases, and
LCH.Clearnet Limited makes no contractual commitment save where
confirmed by hard copy. LCH.Clearnet Limited accepts no liability,
including liability for negligence, in respect of any statement in this
email.

 

LCH.Clearnet Limited, Registered Office: Aldgate House, 33 Aldgate High
Street, London EC3N 1EA. Recognised as a Clearing House under the
Financial Services & Markets Act 2000. Reg in England No.25932 

Telephone: +44 20 7426 7000 Internet: http://www.lchclearnet.com

 


*

 

__Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"
html___ 

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-18 Thread sivarama velicheti
Hi Kevin,

  I am facing the exact same problem with my SSO integration. Let me
know in case you make any progress in that case and I will let you know in
case I have any updates.

Thanks
Siva

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-18 Thread Begosh, Kevin
okay sounds good.  That is with Tomcat?
 

Kevin Begosh, RSP

Tech Ops

Enterprise Business Services

301-791-3540 Phone

410-422-3623 Cell

[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]> 

 



From: Action Request System discussion list(ARSList)
[mailto:[EMAIL PROTECTED] On Behalf Of sivarama velicheti
Sent: Tuesday, November 18, 2008 12:07 PM
To: arslist@ARSLIST.ORG
Subject: Re: Single Sign On (SSO) Issue


** Hi Kevin,

  I am facing the exact same problem with my SSO integration.
Let me know in case you make any progress in that case and I will let
you know in case I have any updates.

Thanks
Siva


__Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"
html___ 

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-18 Thread sivarama velicheti
Yep IIS & Tomcat.

Thanks
Siva

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-19 Thread sivarama velicheti
Hi Kevin,

  Did you make any progress in the issue. I sat the entire day
yesterday but I have nothing to share from my side.

Thanks
Sivarama

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-20 Thread Begosh, Kevin
I was on travel all day yesterday so I did not have time to work on it.
I hopefully will in the next couple of days.
 

Kevin Begosh, RSP

Tech Ops

Enterprise Business Services

301-791-3540 Phone

410-422-3623 Cell

[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]> 

 



From: Action Request System discussion list(ARSList)
[mailto:[EMAIL PROTECTED] On Behalf Of sivarama velicheti
Sent: Wednesday, November 19, 2008 1:52 PM
To: arslist@ARSLIST.ORG
Subject: Re: Single Sign On (SSO) Issue


** Hi Kevin,

  Did you make any progress in the issue. I sat the entire day
yesterday but I have nothing to share from my side.

Thanks
Sivarama


__Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"
html___ 

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-21 Thread Begosh, Kevin
The issue I was having with this was related to Tomcat using
authentication and not letting IIS handle it.  It was fixed but added
the following line to the server.xml file under tomcat for the connector
I was using,
 
tomcatAuthentication="false"
 
that way it uses IIS and not tomcat.  SSO is working for me now.
 

Kevin Begosh, RSP

Tech Ops

Enterprise Business Services

301-791-3540 Phone

410-422-3623 Cell

[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]> 

 



From: Action Request System discussion list(ARSList)
[mailto:[EMAIL PROTECTED] On Behalf Of sivarama velicheti
Sent: Wednesday, November 19, 2008 1:52 PM
To: arslist@ARSLIST.ORG
Subject: Re: Single Sign On (SSO) Issue


** Hi Kevin,

  Did you make any progress in the issue. I sat the entire day
yesterday but I have nothing to share from my side.

Thanks
Sivarama


__Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"
html___ 

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-21 Thread sivarama velicheti
Hi Kevin,

  I had that in tomcat before you mentioned it. But still does not
seem to be working for me. What do you have as your authentication chaning
mode I wonder??

I have IIS to use the integrated windows login but somehow it does not seem
to pick that up.

Thanks
Siva
  -

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-21 Thread Begosh, Kevin
well there are a slew of things that could be wrong.  If you could send
me some logs that might help.  
 

Kevin Begosh, RSP

Tech Ops

Enterprise Business Services

301-791-3540 Phone

410-422-3623 Cell

[EMAIL PROTECTED] <mailto:[EMAIL PROTECTED]> 

 



From: Action Request System discussion list(ARSList)
[mailto:[EMAIL PROTECTED] On Behalf Of sivarama velicheti
Sent: Friday, November 21, 2008 12:53 PM
To: arslist@ARSLIST.ORG
Subject: Re: Single Sign On (SSO) Issue


** Hi Kevin,

  I had that in tomcat before you mentioned it. But still does
not seem to be working for me. What do you have as your authentication
chaning mode I wonder??

I have IIS to use the integrated windows login but somehow it does not
seem to pick that up.

Thanks
Siva
  - 

__Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"
html___ 

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-22 Thread Begosh, Kevin
Well one error message you are getting is this

 

- Connects to ARServer servername through Java Rpc failed with: ERROR
(90): Cannot establish a network connection to the AR System server;
Connection refused: connect servername

 

When you bring up the mid tier what error message do you get.  Are you
sure your mid tier is configured with the correct server name, mid tier
password, etc...

 

From: Action Request System discussion list(ARSList)
[mailto:[EMAIL PROTECTED] On Behalf Of sivarama velicheti
Sent: Friday, November 21, 2008 4:05 PM
To: arslist@ARSLIST.ORG
Subject: Re: Single Sign On (SSO) Issue

 

** Hi Kevin,

 I am attaching my log files. Let me know in case you find
anything. I have hit a dead end and do not know what more to do.

Thanks
Sivarama


__Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"
html___ 


___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) Issue

2008-11-22 Thread sivarama velicheti
Hi Kevin,

   The servername and password has been set up correctly for the
Mid-Tier because if it was not then I would not be able to login and access
the server tables which I am able to right now (once I provide the
credentials). I am able to perform all the operations that I am able to with
the user tool. I am concerned that the plugin server might be giving some
problems. But then again the server is currently set up to authenticate
users against the LDAP server and it is working fine. So it does not seem to
be the problem with the plugin server either.

Thanks
Sivarama

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
Platinum Sponsor: www.rmsportal.com ARSlist: "Where the Answers Are"


Re: Single Sign On (SSO) with CAS

2015-05-26 Thread LJ LongWing
Alex,
Anybody that is willing to provide help to the community is
appreciatedso, while I don't currently have any use for that
information, I never quite know where I'm going to be next month/year, and
I might find the information useful, so, if you don't mind, please, post :)

On Tue, May 26, 2015 at 4:16 PM, Alex Agle  wrote:

> Hi everyone,
>
> I haven't posted in years, because I was spending most of my time working
> with a different BMC product.  Now I'm circling back to the BMC Remedy
> Action Request System.  We're on 6.3 (on Solaris), moving to 8.1.2p1
> on Linux next month.
>
> I documented the upgrade of our test environment.  It didn't go the most
> smoothly, and I couldn't have completed it without BMC Support's help.
> We had to manually update some of the table structures.  Perhaps this
> is because we totally skipped 7.0, 7.1, 7.5, 7.6, and 8.0.  We also
> had a duplicate index on one table, according to the data dictionary,
> so we had to delete it.
>
> In any case, my last technical challenge was to get single sign on
> working.  I never tried to get it working before, and I thought it
> would be a bonus if I could get it working as part of this upgrade.
>
> I did a lot of google searching, and I saw a few other posts where
> other people were trying to accomplish what I wanted to do.  Either
> nobody responded, or some people gave some general pointers, or
> javasystemsolutions.com chimed in to tout their product.
>
> In any case, after a long 14 hour day, I finally got it working.
> We have the following environment:
> Linux RHEL 6.6 / Apache 2.2 / Tomcat 7.0 / mod_ssl /
>   mod_auth_cas 1.0.9 / areasso 7.0
>
> If there is any interest, I will write up a guide on how to implement
> SSO with CAS and share it with the list.
>
> Thanks,
> Alex
> --
> O--O--O-O
> |   Alex Agle   \/ Lead Application Developer   |
> O---/\  Georgia Institute of Technology |
> |(404)894-6165 //\\  EIS - Applications Support |
> | Atlanta, GA //\/\\  alex.agle(@)oit.gatech.edu|
> OO-\/\/-O---O
>
>
> ___
> UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
> "Where the Answers Are, and have been for 20 years"
>

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
"Where the Answers Are, and have been for 20 years"


Re: Single Sign On (SSO) with CAS

2015-05-27 Thread Serouche Rahimpour
Hi,

Yes please do post the info.
I’ve implemented the SSO with CAS and have the same environment you described 
except instead of Linux we still have an old “SunOS Generic_147440-09 sun4v 
sparc sun4v”
We shall move to Linux in a couple of months. So your info could be very much 
appreciated.
Best



From: Action Request System discussion list(ARSList) 
[mailto:arslist@ARSLIST.ORG] On Behalf Of LJ LongWing
Sent: Wednesday, May 27, 2015 12:20 AM
To: arslist@ARSLIST.ORG
Subject: Re: Single Sign On (SSO) with CAS

**
Alex,
Anybody that is willing to provide help to the community is appreciatedso, 
while I don't currently have any use for that information, I never quite know 
where I'm going to be next month/year, and I might find the information useful, 
so, if you don't mind, please, post :)

On Tue, May 26, 2015 at 4:16 PM, Alex Agle 
mailto:alex.a...@oit.gatech.edu>> wrote:
Hi everyone,

I haven't posted in years, because I was spending most of my time working
with a different BMC product.  Now I'm circling back to the BMC Remedy
Action Request System.  We're on 6.3 (on Solaris), moving to 8.1.2p1
on Linux next month.

I documented the upgrade of our test environment.  It didn't go the most
smoothly, and I couldn't have completed it without BMC Support's help.
We had to manually update some of the table structures.  Perhaps this
is because we totally skipped 7.0, 7.1, 7.5, 7.6, and 8.0.  We also
had a duplicate index on one table, according to the data dictionary,
so we had to delete it.

In any case, my last technical challenge was to get single sign on
working.  I never tried to get it working before, and I thought it
would be a bonus if I could get it working as part of this upgrade.

I did a lot of google searching, and I saw a few other posts where
other people were trying to accomplish what I wanted to do.  Either
nobody responded, or some people gave some general pointers, or
javasystemsolutions.com<http://javasystemsolutions.com> chimed in to tout their 
product.

In any case, after a long 14 hour day, I finally got it working.
We have the following environment:
Linux RHEL 6.6 / Apache 2.2 / Tomcat 7.0 / mod_ssl /
  mod_auth_cas 1.0.9 / areasso 7.0

If there is any interest, I will write up a guide on how to implement
SSO with CAS and share it with the list.

Thanks,
Alex
--
O--O--O-O
|   Alex Agle   \/ Lead Application Developer   |
O---/\  Georgia Institute of Technology |
|(404)894-6165 //\\  EIS - Applications Support |
| Atlanta, GA //\/\\  alex.agle(@)oit.gatech.edu<http://oit.gatech.edu>|
OO-\/\/-O---O

___
UNSUBSCRIBE or access ARSlist Archives at 
www.arslist.org<http://www.arslist.org>
"Where the Answers Are, and have been for 20 years"

_ARSlist: "Where the Answers Are" and have been for 20 years_

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
"Where the Answers Are, and have been for 20 years"


Re: Single Sign On (SSO) with CAS

2015-05-28 Thread Rick Phillips

Very nice!

Thanks,

rp

On 5/28/2015 1:36 PM, Alex Agle wrote:

I went ahead and wrote a 10 page guide on implementing SSO with CAS.

I hope it is helpful.  If anyone has any corrections, please feel
free to send them my way.

Thanks,
Alex

On Tue, May 26, 2015 at 04:20:18PM -0600, LJ LongWing wrote:

Alex,
Anybody that is willing to provide help to the community is
appreciatedso, while I don't currently have any use for that
information, I never quite know where I'm going to be next month/year, and
I might find the information useful, so, if you don't mind, please, post :)

On Tue, May 26, 2015 at 4:16 PM, Alex Agle  wrote:


Hi everyone,

I haven't posted in years, because I was spending most of my time working
with a different BMC product.  Now I'm circling back to the BMC Remedy
Action Request System.  We're on 6.3 (on Solaris), moving to 8.1.2p1
on Linux next month.

I documented the upgrade of our test environment.  It didn't go the most
smoothly, and I couldn't have completed it without BMC Support's help.
We had to manually update some of the table structures.  Perhaps this
is because we totally skipped 7.0, 7.1, 7.5, 7.6, and 8.0.  We also
had a duplicate index on one table, according to the data dictionary,
so we had to delete it.

In any case, my last technical challenge was to get single sign on
working.  I never tried to get it working before, and I thought it
would be a bonus if I could get it working as part of this upgrade.

I did a lot of google searching, and I saw a few other posts where
other people were trying to accomplish what I wanted to do.  Either
nobody responded, or some people gave some general pointers, or
javasystemsolutions.com chimed in to tout their product.

In any case, after a long 14 hour day, I finally got it working.
We have the following environment:
Linux RHEL 6.6 / Apache 2.2 / Tomcat 7.0 / mod_ssl /
   mod_auth_cas 1.0.9 / areasso 7.0

If there is any interest, I will write up a guide on how to implement
SSO with CAS and share it with the list.

Thanks,
Alex
--
O--O--O-O
|   Alex Agle   \/ Lead Application Developer   |
O---/\  Georgia Institute of Technology |
|(404)894-6165 //\\  EIS - Applications Support |
| Atlanta, GA //\/\\  alex.agle(@)oit.gatech.edu|
OO-\/\/-O---O


___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
"Where the Answers Are, and have been for 20 years"


___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
"Where the Answers Are, and have been for 20 years"


___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
"Where the Answers Are, and have been for 20 years"


Re: Single Sign On (SSO) with CAS

2015-05-28 Thread Serouche Rahimpour
Excellent thanks!


-Original Message-
From: Action Request System discussion list(ARSList) 
[mailto:arslist@ARSLIST.ORG] On Behalf Of Alex Agle
Sent: Thursday, May 28, 2015 10:37 PM
To: arslist@ARSLIST.ORG
Subject: Re: Single Sign On (SSO) with CAS

I went ahead and wrote a 10 page guide on implementing SSO with CAS.

I hope it is helpful.  If anyone has any corrections, please feel free to send 
them my way.

Thanks,
Alex

On Tue, May 26, 2015 at 04:20:18PM -0600, LJ LongWing wrote:
> Alex,
> Anybody that is willing to provide help to the community is 
> appreciatedso, while I don't currently have any use for that 
> information, I never quite know where I'm going to be next month/year, 
> and I might find the information useful, so, if you don't mind, 
> please, post :)
> 
> On Tue, May 26, 2015 at 4:16 PM, Alex Agle  wrote:
> 
> > Hi everyone,
> >
> > I haven't posted in years, because I was spending most of my time 
> > working with a different BMC product.  Now I'm circling back to the 
> > BMC Remedy Action Request System.  We're on 6.3 (on Solaris), moving 
> > to 8.1.2p1 on Linux next month.
> >
> > I documented the upgrade of our test environment.  It didn't go the 
> > most smoothly, and I couldn't have completed it without BMC Support's help.
> > We had to manually update some of the table structures.  Perhaps 
> > this is because we totally skipped 7.0, 7.1, 7.5, 7.6, and 8.0.  We 
> > also had a duplicate index on one table, according to the data 
> > dictionary, so we had to delete it.
> >
> > In any case, my last technical challenge was to get single sign on 
> > working.  I never tried to get it working before, and I thought it 
> > would be a bonus if I could get it working as part of this upgrade.
> >
> > I did a lot of google searching, and I saw a few other posts where 
> > other people were trying to accomplish what I wanted to do.  Either 
> > nobody responded, or some people gave some general pointers, or 
> > javasystemsolutions.com chimed in to tout their product.
> >
> > In any case, after a long 14 hour day, I finally got it working.
> > We have the following environment:
> > Linux RHEL 6.6 / Apache 2.2 / Tomcat 7.0 / mod_ssl /
> >   mod_auth_cas 1.0.9 / areasso 7.0
> >
> > If there is any interest, I will write up a guide on how to 
> > implement SSO with CAS and share it with the list.
> >
> > Thanks,
> > Alex
> > --
> > O--O--O-O
> > |   Alex Agle   \/ Lead Application Developer   |
> > O---/\  Georgia Institute of Technology |
> > |(404)894-6165 //\\  EIS - Applications Support |
> > | Atlanta, GA //\/\\  alex.agle(@)oit.gatech.edu|
> > OO-\/\/-O---O
> >
> >
> > 
> > ___ UNSUBSCRIBE or access ARSlist Archives at 
> > www.arslist.org "Where the Answers Are, and have been for 20 years"
> >
> 
> __
> _ UNSUBSCRIBE or access ARSlist Archives at www.arslist.org 
> "Where the Answers Are, and have been for 20 years"

--
O--O--O-O
|   Alex Agle   \/ Lead Application Developer   |
O---/\  Georgia Institute of Technology |
|(404)894-6165 //\\  EIS - Applications Support |
| Atlanta, GA //\/\\  alex.agle(@)oit.gatech.edu|
OO-\/\/-O---O

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org "Where the Answers 
Are, and have been for 20 years"

___
UNSUBSCRIBE or access ARSlist Archives at www.arslist.org
"Where the Answers Are, and have been for 20 years"