Re: [cas-user] CAS 6.3.x + Google Auth as 2FA

2021-06-04 Thread He vincent
Hi , I got the same issue, I have upgraded to 6.3.3. It works now. but it got JAVA exception when I entered wrong verify code. It seems not friendly. Here is the error logs: 2021-06-04 16:57:44,260 ERROR [org.apereo.cas.authentication.PolicyBasedAuthenticationManager] - 2021-06-04 16:57:44,260

Re: [cas-user] CAS 6.3.x + Google Auth as 2FA

2021-04-13 Thread Bartosz Nitkiewicz
It looks like it is working indeed. But you can provide any numer and CAS authorize user. Check it twice ;) wtorek, 13 kwietnia 2021 o 16:30:47 UTC+2 Łukasz Woźniak napisał(a): > Hi, I have czas 6.3.2 with Google mfa and it works. Dont change config > cas.authn.mfa.gauth.name it stole stary

Re: [cas-user] CAS 6.3.x + Google Auth as 2FA

2021-04-13 Thread Bartosz Nitkiewicz
Thanks for reply. It looks like building CAS 6.3.3 solve gauth issue. This is latest stable CAS version. Once again thank You. wtorek, 13 kwietnia 2021 o 16:32:13 UTC+2 Łukasz Woźniak napisał(a): > It should stay mfa-gauth. Sorry phone dictionary problem  > > wt., 13 kwi 2021, 16:30 użytkownik

Re: [cas-user] CAS 6.3.x + Google Auth as 2FA

2021-04-13 Thread Łukasz Woźniak
It should stay mfa-gauth. Sorry phone dictionary problem  wt., 13 kwi 2021, 16:30 użytkownik Łukasz Woźniak napisał: > Hi, I have czas 6.3.2 with Google mfa and it works. Dont change config > cas.authn.mfa.gauth.name it stole stary mfa-gauth > > wt., 13 kwi 2021, 16:04 użytkownik Bartosz

Re: [cas-user] CAS 6.3.x + Google Auth as 2FA

2021-04-13 Thread Łukasz Woźniak
Hi, I have czas 6.3.2 with Google mfa and it works. Dont change config cas.authn.mfa.gauth.name it stole stary mfa-gauth wt., 13 kwi 2021, 16:04 użytkownik Bartosz Nitkiewicz napisał: > I have cloned CAS sources and > copy >

Re: [cas-user] CAS 6.3.x + Google Auth as 2FA

2021-04-13 Thread 'Philippe MARASSE' via CAS Community
whoops :-), just forgotten some other modifications, here's the whole diff file : https://dpaste.com/GWJ5L7F59 Regards. Le 13/04/2021 à 16:04, Bartosz Nitkiewicz a écrit : > I have cloned CAS sources and > copy  >

Re: [cas-user] CAS 6.3.x + Google Auth as 2FA

2021-04-13 Thread Bartosz Nitkiewicz
I have cloned CAS sources and copy cas/support/cas-server-support-gauth-core/src/main/java/org/apereo/cas/gauth/credential/GoogleAuthenticatorOneTimeTokenCredentialValidator.java to

Re: [cas-user] CAS 6.3.x + Google Auth as 2FA

2021-04-13 Thread 'Philippe MARASSE' via CAS Community
A good question indeed :-) I've took a look over my overlay, it seem that I only overloaded the flawed class from the commit : cas-overlay/src/main/java/org/apereo/cas/gauth/credential/GoogleAuthenticatorOneTimeTokenCredentialValidator.java CAS 6.3.2 is older than the patch I think. So :   -

Re: [cas-user] CAS 6.3.x + Google Auth as 2FA

2021-04-13 Thread Bartosz Nitkiewicz
I have CAS v 6.3.2 which is quite new. But I'm not sure if its newer than this patch. Hmm, I've cloned this overlay https://github.com/apereo/cas-overlay-template/tree/6.3 with latest commit 995813b on 14 Feb So how to make it work? I don't want to build CAS form sources:

Re: [cas-user] CAS 6.3.x + Google Auth as 2FA

2021-04-13 Thread 'Philippe MARASSE' via CAS Community
Hello, It has been fixed there https://github.com/apereo/cas/commit/e7cb3b8b44867addcb6b8510cbbed45cbc9b265f Verify that you version of CAS is newer than that commit, it should be fine. Regards Le 13/04/2021 à 13:04, Bartosz Nitkiewicz a écrit : > Hi,  > The setup looks like this: > > CAS +

[cas-user] CAS 6.3.x + Google Auth as 2FA

2021-04-13 Thread Bartosz Nitkiewicz
Hi, The setup looks like this: CAS + Vault (config file) + LDAP + 2FA (mfa-gauth) + redis for gauth and ticket registration. After testing before production deployment I've noticed that user can authorize providing user and pass, when asking for Gauth token* it can be anything (even one