<div dir="ltr">Thank you. You saved me from going down that rabbit hole.<div><div></div><div><br></div><div>After enabling the MemcachedStorageService, I now have attributes flowing to the CAS client.</div><div><br></div><div>I am still getting "Authorization Required", but I am guessing that is a client-side configuration issue. I will update after I have dug in some more. </div><div><br></div><div><div>Thanks All!</div><div><br></div><div>Jesse</div></div></div></div><div class="gmail_extra"><br clear="all"><div><div class="gmail_signature"><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div dir="ltr"><div dir="ltr"><div><div style="font-size:12.8000001907349px;color:rgb(136,136,136)"><span style="font-size:12.8000001907349px"><b><br></b></span></div><div style="font-size:12.8000001907349px;color:rgb(136,136,136)"><span style="font-size:12.8000001907349px"><b>Jesse Martinich</b></span></div><div style="font-size:12.8000001907349px;color:rgb(136,136,136)">Systems Administrator</div><div style="font-size:12.8000001907349px;color:rgb(136,136,136)"><font size="1">Southern Oregon University</font><span style="font-size:12.8000001907349px"> </span><font size="1">| 1250 Siskiyou Blvd </font><font size="1">| Ashland OR  97520</font><br></div><div style="font-size:12.8000001907349px;color:rgb(136,136,136)"><font size="1">541-552-8424</font></div><div style="font-size:12.8000001907349px;color:rgb(136,136,136)"><font size="1"><br></font></div><div style="font-size:12.8000001907349px;color:rgb(136,136,136)"><font size="1"><img src="https://docs.google.com/uc?export=download&id=0BwKjt2yacqt7UkNnWGxXaS1VUzQ&revid=0BwKjt2yacqt7bm9QbWZ5ejBHUWdZeGhGZ0VGWFVLTHFHb21BPQ"></font></div></div></div></div></div></div></div></div></div></div></div>
<br><div class="gmail_quote">On Fri, Jun 12, 2015 at 10:04 AM, Cantor, Scott <span dir="ltr"><<a href="mailto:cantor.2@osu.edu" target="_blank">cantor.2@osu.edu</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><span class="">On 6/12/15, 12:47 PM, "users on behalf of Jesse Martinich" <<a href="mailto:users-bounces@shibboleth.net">users-bounces@shibboleth.net</a> on behalf of <a href="mailto:martinicj@sou.edu">martinicj@sou.edu</a>> wrote:<br>
<br>
>Please excuse my ignorance. I think Walter may have alluded to this yesterday... Might I need to setup back channel support for SOAP endpoints?<br>
<br>
</span>Not if your validation call is using 443.<br>
<br>
In SAML terms, using endpoints protected by commercial certificates and having to implement trust on that basis is a mess. I would imagine that's less true of a CAS scenario where the number of such trusts is one. But I also think there's no reason you couldn't use a back channel port with a self-signed cert either, but you likely wouldn't bother unless you were also doing it for SAML.<br>
<br>
The IdP doesn't really pay attention to the port when it comes to the profile endpoints it runs, so anything on 443 is basically available on 8443 if it's configured to support that.<br>
<span class="HOEnZb"><font color="#888888"><br>
-- Scott<br>
</font></span><div class="HOEnZb"><div class="h5"><br>
--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br>
</div></div></blockquote></div><br></div>