Hi, I don't understand why you use the *authc* filter (you don't have any form in your application right ?). The login page is on the CAS server. I'm pretty sure that it's the root cause of your problem : generating a UsernamePasswordToken whereas the CasRealm expects a CasToken.
To use properly the CAS server, it should retrieve the attributes of the authenticated user, not your application and push them to your app during the service ticket validation. Best regards, Jérôme -- View this message in context: http://shiro-user.582556.n2.nabble.com/Cant-Integrate-Shiro-with-CAS-tp7579234p7579235.html Sent from the Shiro User mailing list archive at Nabble.com.
