IDP 3.3.2 CAS protocol and alternate CAS username difficulty
Michael A Grady
mgrady at unicon.net
Thu Apr 12 15:45:02 EDT 2018
> On Apr 12, 2018, at 2:36 PM, Mak, David <d.mak at northeastern.edu> wrote:
>
> ’ve hit a block and would like to see if others might be able to point me in the right direction. On a IDP 3.3.2 setup with a CAS configuration setup to release a different attribute as the name-identifier, I see log entries that show it going through the process but the payload itself doesn’t have the said attribute value as the nameid, but instead, has the login id.
See the section entitled:
Alternate cas:user in the validation response (Optional)
in the following Shib wiki page:
https://wiki.shibboleth.net/confluence/display/IDP30/CasProtocolConfiguration <https://wiki.shibboleth.net/confluence/display/IDP30/CasProtocolConfiguration>
--
Michael A. Grady
IAM Architect, Unicon, Inc.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20180412/44d30ea5/attachment.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 874 bytes
Desc: Message signed with OpenPGP
URL: <http://shibboleth.net/pipermail/users/attachments/20180412/44d30ea5/attachment.sig>
More information about the users
mailing list