RE:[cas-user] CAS with DB connection.

2015-06-10 Thread Mace, Mark
connection. Replicated data store in separate data centre - the switch over is manual (planning for automated via LB - if main is down). From: Mace, Mark [ma...@ohio.edu] Sent: Tuesday, June 09, 2015 14:13 To: cas-user@lists.jasig.org<mailto:cas-user@lists.jasig.

[cas-user] CAS with DB connection.

2015-06-09 Thread Mace, Mark
I had an interesting question come up today, and thought I'd query the community on this. How do you architect CAS to handle a DB failure (be it unintentional or maintenance) when you're using the DB to store data (be it tickets or access manager)? --mark OHIO UNIVERSITY Application & Informa

RE: [cas-user] CAS 3.5.0 services

2015-04-06 Thread Mace, Mark
It looks like you don’t have a certificate set up for localhost. The CAS server can’t verify who “localhost” is, as there is not a certificate present. I’d look into documentation for setting up a self signed certificate based on your operating system. --mark From: moaxcp [mailto:moa...@gmail

[cas-user] Theming CAS

2015-04-03 Thread Mace, Mark
The documentation from http://jasig.github.io/cas/4.0.x/installation/User-Interface-Customization.html indicates adding a theme properties file under /WEB-INF/classes, which allows for assignment of a custom CSS and JS file, is that the limitation of theming in CAS? So, for example, if I want

RE: [cas-user] CAS and Web Application Firewall interaction

2015-04-03 Thread Mace, Mark
Lua scripting acting as WAF. No problems at all regarding this. Next step is move to Mod_Security but still haven't tested mod_sec with nginx, and also we don't have plans to migrate to apache server in short. -J On Fri, Apr 3, 2015 at 11:03 AM, Mace, Mark mailto:ma...@ohio.edu>&

RE:[cas-user] CAS and Web Application Firewall interaction

2015-04-03 Thread Mace, Mark
*bump* Anyone? Anyone? Bueller? Hi folks, just wanted to bump this, I am hoping to get a confirmation from another institution that says "Yes, we are running CAS and a Web Application Firewall and they play nice together". Thanks in advance, --mark From: Mace, Mark [mailto:ma..

RE: [cas-user] CAS 4 Proxy Callback issue

2015-04-03 Thread Mace, Mark
Another thing that we’ve recently ran into is an issue with firewall rules, the server that is requesting the Proxy Granting Ticket must be accessible from the CAS server. The CAS server initiates a connection back to the server requesting the PGT. From: Marvin Addison [mailto:marvin.addi...@g

[cas-user] CAS and Web Application Firewall interaction

2015-03-31 Thread Mace, Mark
Greetings all, we're working on setting up an installation of CAS here at OHIO University. Someone higher up the ladder has become concerned with how a Web Application Firewall (WAF) would interact with CAS as a SSO solution. I would like some concrete examples to back up my opinion on this, s