Unique session shibboleth and CAS

Peter Schober peter.schober at univie.ac.at
Thu Jan 15 10:34:57 EST 2015


* samir el otmani <elotmani.samir at gmail.com> [2015-01-15 16:17]:
> I mean by unique session : for example a *user1 *authenticate successfully
> , after that an other *user2 *try to authenticate (with same 'Principal' of
> the *user1*) , the session for *user1 *will be inactive , so user1 must
> authenticate again.
> which means  authentication will be granted for only one session ,and my
> CAS server already support this use case and i want to dispatch it to the
> IDP and SP sessions.

If you disable the IDP SSO session like I described, the IDP SSO
session is out of the equasion. So however you think you can have SSO
sometimes and forced re-authentication some other time (with the same
principal!), it is not a Shibboleth issue anymore. So you're done.
-peter


More information about the users mailing list