Unique session shibboleth and CAS
samir el otmani
elotmani.samir at gmail.com
Thu Jan 15 10:58:42 EST 2015
thank you Peter ,
what about the SP session , it's keeped even if the IDP ask always the CAS .
2015-01-15 15:34 GMT+00:00 Peter Schober <peter.schober at univie.ac.at>:
> * samir el otmani <elotmani.samir at gmail.com> [2015-01-15 16:17]:
> > I mean by unique session : for example a *user1 *authenticate
> successfully
> > , after that an other *user2 *try to authenticate (with same 'Principal'
> of
> > the *user1*) , the session for *user1 *will be inactive , so user1 must
> > authenticate again.
> > which means authentication will be granted for only one session ,and my
> > CAS server already support this use case and i want to dispatch it to the
> > IDP and SP sessions.
>
> If you disable the IDP SSO session like I described, the IDP SSO
> session is out of the equasion. So however you think you can have SSO
> sometimes and forced re-authentication some other time (with the same
> principal!), it is not a Shibboleth issue anymore. So you're done.
> -peter
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
--
*EL OTMANI Samir*
*Ingénieur d'Etat en Génie Informatique *
*Tel:+212 699 041 864*
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20150115/15952d97/attachment.html
More information about the users
mailing list