[cas-user] CAS5, OpenID connect flow newbie question

2019-03-01 Thread Yan Zhou
Hello, I am experimenting with CAS5 OpenID connect support with the overlay project of 5.3.8. I put this url in browser, CAS login page comes up, after I enter user/password, the next screen is: http://localhost:8180/ (this is where my CAS5 runs).

[cas-user] CAS 5.3.8 MFA bypass problem

2019-03-01 Thread cski
We are in the process of deploying Duo MFA and using CAS 5.3.8. We trigger MFA globally using the cas.authn.mfa.globalPrincipalAttributeNameTriggers and cas.authn.mfa.globalPrincipalAttributeValueRegex settings in our cas.properties file. That is working well, however, we have specific

[cas-user] SAML2.0 integration with CAS 5.1.4

2019-03-01 Thread Pameliya Mukherjee
Hi All, When I am hitting endpoint like "http://localhost:8080/cas/login?service=http://localhost:8080/cas/idp/login; I am getting desired Login page. but while trying to login with user name and password, I am getting a below error and url is become

[cas-user] Re: Attribute resolution: Use one of the attribute to act as principal ID

2019-03-01 Thread Andy Ng
Nvm, found my answer here: https://apereo.github.io/cas/5.3.x/integration/Attribute-Release-PrincipalId.html#attribute - Andy -- - Website: https://apereo.github.io/cas - Gitter Chatroom: https://gitter.im/apereo/cas - List Guidelines: https://goo.gl/1VRrw7 - Contributions:

[cas-user] Attribute resolution: Use one of the attribute to act as principal ID

2019-03-01 Thread Andy Ng
Hi all, This question is about attribute resolution. Consider that I normally resolve the following principal and attribute: *For most of my services will be this:* === *Principal ID:* id: andy *Attributes:* user_id: 12345678 other_key: