group in CAS service definition of CASServiceRegistry
cantor.2 at osu.edu
Fri Jun 3 12:26:26 UTC 2022
> It seems the group in CAS service definition of CASServiceRegistry cannot be used in InEntityGroup type of
> policy rule in AttributeFilterConfiguration. I can’t group related CAS services definition in this way to have the
> same attribute release policy. Is it not implemented or a bug?
> However, the same group name can be used to alter the relying party policy with RelyingPartyByGroup.
As far as I know they would depend on the same information, but it's possible they don't. You can file a bug but there might be a legitimate reason for it. For the moment I would simply use SAML metadata instead of the CAS registry if you want it to work, and I'd use tags, not groups.
More information about the users