CAS Encoded Ticket & CAS User

Ryan Rumbaugh rrumbaugh at nebraska.edu
Fri Jan 18 16:42:16 EST 2019


I guess the crux of my question is, how can a CAS application know the username with the backchannel call on serviceValidate going to Shib servers that were not used for the front-channel (from a configuration/security perspective the Shib servers are identical, same sealer key for example)? This implies to me that the encoded ticket includes the cas:user. 

--
Ryan Rumbaugh

On 1/18/19, 2:03 PM, "users on behalf of Marvin Addison" <users-bounces at shibboleth.net on behalf of serac at vt.edu> wrote:

    On Fri, Jan 18, 2019 at 2:28 PM Ryan Rumbaugh <rrumbaugh at nebraska.edu> wrote:
    > There is no username information included in the encrypted ticket then?
    
    I don't have a clear understanding. I'm not clear where you're missing
    data. Does the data you expect appear in the CAS protocol response
    when using EncodingTicketService?
    
    M
    -- 
    For Consortium Member technical support, see https://urldefense.proofpoint.com/v2/url?u=https-3A__wiki.shibboleth.net_confluence_x_coFAAg&d=DwICAg&c=Cu5g146wZdoqVuKpTNsYHeFX_rg6kWhlkLF8Eft-wwo&r=x_uM7qpgXzh_70B3Dgey5pfdCFAWMhq-IedVFyaAIwg&m=IRxrSNoNK4peaEkYqLkqbprrQ156jrYEA9Cpvc9c9mA&s=Ww-meXPhu7sNn_JZ9cJZutb8wVsPnM0vuzkg9I2TBYw&e=
    To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
    



More information about the users mailing list