<html xmlns:o="urn:schemas-microsoft-com:office:office" xmlns:w="urn:schemas-microsoft-com:office:word" xmlns:m="http://schemas.microsoft.com/office/2004/12/omml" xmlns="http://www.w3.org/TR/REC-html40">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<meta name="Title" content="">
<meta name="Keywords" content="">
<meta name="Generator" content="Microsoft Word 15 (filtered medium)">
<style><!--
/* Font Definitions */
@font-face
{font-family:"Cambria Math";
panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
{font-family:Calibri;
panose-1:2 15 5 2 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
{margin:0cm;
margin-bottom:.0001pt;
font-size:12.0pt;
font-family:"Times New Roman";}
a:link, span.MsoHyperlink
{mso-style-priority:99;
color:blue;
text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
{mso-style-priority:99;
color:purple;
text-decoration:underline;}
span.hoenzb
{mso-style-name:hoenzb;}
span.EmailStyle18
{mso-style-type:personal-reply;
font-family:"Times New Roman";
color:windowtext;}
span.msoIns
{mso-style-type:export-only;
mso-style-name:"";
text-decoration:underline;
color:teal;}
.MsoChpDefault
{mso-style-type:export-only;
font-size:10.0pt;}
@page WordSection1
{size:612.0pt 792.0pt;
margin:72.0pt 72.0pt 72.0pt 72.0pt;}
div.WordSection1
{page:WordSection1;}
--></style>
</head>
<body bgcolor="white" lang="EN-US" link="blue" vlink="purple">
<div class="WordSection1">
<p class="MsoNormal">Hi there, a follow-up question for this thread : <o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">We are moving to the latest Shib IDP v3.2.1.<o:p></o:p></p>
<p class="MsoNormal">We have an external CAS Server, v3.5.2.1.<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">We are looking at the cas-client-core JAR files to pull in to make the Unicon plugin work.<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">https://github.com/Unicon/shib-cas-authn3/releases/<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">Presumably we should be able to make this work with the Unicon plugin v3.0.0 support, as we cannot yet take advantage of the latest v3.1.0 (which requires an external CAS Server v4.x) ?
<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">Thanks!<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal">Corey S.<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<div>
<p class="MsoNormal">Corey Scholefield | <a href="mailto:coreys@uvic.ca"><span style="color:#0563C1">coreys@uvic.ca</span></a><o:p></o:p></p>
<p class="MsoNormal">Sr. Identity Systems Analyst<o:p></o:p></p>
<p class="MsoNormal">University of Victoria | Victoria, B.C. Canada<o:p></o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
</div>
<p class="MsoNormal"><o:p> </o:p></p>
<p class="MsoNormal"><o:p> </o:p></p>
<div style="border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0cm 0cm 0cm">
<p class="MsoNormal"><b><span style="font-family:Calibri;color:black">From: </span>
</b><span style="font-family:Calibri;color:black">users <users-bounces@shibboleth.net> on behalf of Michael Dahlberg <olgamirth@gmail.com><br>
<b>Reply-To: </b>Shib Users <users@shibboleth.net><br>
<b>Date: </b>Thursday, February 11, 2016 at 6:54 AM<br>
<b>To: </b>Shib Users <users@shibboleth.net><br>
<b>Subject: </b>Re: CAS as Remote Authentication Handler in V3<o:p></o:p></span></p>
</div>
<div>
<p class="MsoNormal"><o:p> </o:p></p>
</div>
<div>
<p class="MsoNormal">Marvin, Andrew, and Leonard: <o:p></o:p></p>
<div>
<p class="MsoNormal"><o:p> </o:p></p>
</div>
<div>
<p class="MsoNormal">Thank you very much! I appreciate your input. Also, thank you immensely for the link to Unicon's plugin. I was not aware of that at all.<o:p></o:p></p>
</div>
<div>
<p class="MsoNormal"><o:p> </o:p></p>
</div>
<div>
<p class="MsoNormal">Mike<o:p></o:p></p>
</div>
</div>
<div>
<p class="MsoNormal"><o:p> </o:p></p>
<div>
<p class="MsoNormal">On Wed, Feb 10, 2016 at 4:31 PM, Leonard J. Peirce <<a href="mailto:leonard.peirce+shibboleth@wmich.edu" target="_blank">leonard.peirce+shibboleth@wmich.edu</a>> wrote:<o:p></o:p></p>
<blockquote style="border:none;border-left:solid #CCCCCC 1.0pt;padding:0cm 0cm 0cm 6.0pt;margin-left:4.8pt;margin-right:0cm">
<p class="MsoNormal">On 16-02-10 03:07 PM, Michael Dahlberg wrote:<o:p></o:p></p>
<blockquote style="border:none;border-left:solid #CCCCCC 1.0pt;padding:0cm 0cm 0cm 6.0pt;margin-left:4.8pt;margin-right:0cm">
<p class="MsoNormal">We're upgrading our Shib V2 installation to V3 (not actually doing the upgrade, more like a migration). Our current Remote<br>
Authentication handler is an external CAS server setup according to the directions at<br>
<a href="https://wiki.jasig.org/display/CASUM/Shibboleth-CAS+Integration" target="_blank">https://wiki.jasig.org/display/CASUM/Shibboleth-CAS+Integration</a>.<br>
This documentation discusses using an external CAS server with IdPv2. Can these same instructions be used to setup the V3 IdP to<br>
use an external CAS server as a remote authentication handler?<br>
<br>
<br>
The documentation in the wiki talks about using the internal CAS protocol support with a server-side StorageService implementation.<br>
I believe this is using the IdP as the CAS server. We'd prefer to keep our existing standalone CAS server. Given that, is the<br>
optimal method of seting up CAS Remote Authentication using the jar libraries from JASIG?<o:p></o:p></p>
</blockquote>
<p class="MsoNormal"><br>
I'm pretty much in the same boat with a V2 IdP using an external CAS<br>
server and migrating to a new installation of a V3 IdP that must<br>
(at least in the short term) continue to use an external CAS server.<br>
I'm using the plugin here:<br>
<br>
<a href="https://github.com/unicon/shib-cas-authn3" target="_blank">https://github.com/unicon/shib-cas-authn3</a><br>
<br>
In our test V3 IdP it is working nicely.<span style="color:#888888"><br>
<br>
<span class="hoenzb">- Leonard</span><br>
<span class="hoenzb">-- </span><br>
<span class="hoenzb">To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net" target="_blank">
users-unsubscribe@shibboleth.net</a></span></span><o:p></o:p></p>
</blockquote>
</div>
<p class="MsoNormal"><o:p> </o:p></p>
</div>
</div>
</body>
</html>