Re: Screencast #3

2013-09-06 Thread Dan Haywood
Good stuff, Bhargav, you've been making some really good progress lately. I'm cc'ing to users, too. On 6 September 2013 19:43, Bhargav Golla wrote: > As Dan rightly pointed out, replaced the captions to top of video and have > added new captions to annotate the video better. The video is now l

Re: Isis session and transaction management on a custom viewer

2013-09-06 Thread David Tildesley
Hi Oscar, David (me) wrote: >I guess if you don't have desktop (kerberos)  SSO to the CAS sts then you >haven't got the same issue as us if you keep the cas token timeout less than >the http session timeout. Scrub that previous assumption - you will have the same problem if the user is access

Re: Isis session and transaction management on a custom viewer

2013-09-06 Thread David Tildesley
Hi Oscar, That's good (CAS) where Shiro has a plugin. We (it's not my money) weren't prepared to invest in writing a Kerberos authentication plugin for Shiro when Weblogic already does Kerberos authentication and it's already got the tick from Ent architecture. I'll let you know what conclusio

Re: Isis session and transaction management on a custom viewer

2013-09-06 Thread GESCONSULTOR - Óscar Bou
Hi, David. Really interesting. This second we plan to integrate with the CAS SSO platform the Isis domain, as detailed in [1]. Authentication in CAS, authorization in Domain, thanks to Shiro (and also on CAS on ). It would be helpful to know about your approach to logout and session timeout

Re: Isis session and transaction management on a custom viewer

2013-09-06 Thread David Tildesley
Hi Dan, Dan wrote: >If using Isis' Shiro integration for authenticaiotn/authorizatino, then >there are also Shiros session management to consider [4].  I am pretty sure >the default for that is also HttpSession, but it would seem to be pluggable >and they say it supports clusters [5]. You're rig

Re: Isis session and transaction management on a custom viewer

2013-09-06 Thread GESCONSULTOR - Óscar Bou
Thanks for the detailed explanation and the links to those resources. As we currently have an Apache Isis integration with our viewer, we knew the "high-level" structure, but it needs to be improved (experiencing some session or transaction management problems that originated the request). We