<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Share with mod_auth_cas not working in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225185#M178315</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Thanks. We appreciate your contribution too.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 06 Nov 2009 15:10:02 GMT</pubDate>
    <dc:creator>dward</dc:creator>
    <dc:date>2009-11-06T15:10:02Z</dc:date>
    <item>
      <title>Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225159#M178289</link>
      <description>I'm in the process of trying to get Community Edition 3.2r to talk with my university's CAS server. So far I have followed the wiki page instructions for external authentication and can now log into the Alfresco explorer using SSO however Share gives me the following error below. I'm wondering if my</description>
      <pubDate>Tue, 27 Oct 2009 21:28:32 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225159#M178289</guid>
      <dc:creator>jmwarfe</dc:creator>
      <dc:date>2009-10-27T21:28:32Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225160#M178290</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I have exactly the same problem.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Logging into CAS with the alfresco-share certificate as described in the wiki works. Also does the snoop.jsp example.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Furthermore WebDAV, which is not protected by CAS, doesn't work anymore. Do I need to put LDAP authentication back in alfresco-global.properties?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;dward, can you help us here?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;TIA,&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Matthias.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 29 Oct 2009 09:08:01 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225160#M178290</guid>
      <dc:creator>matthias</dc:creator>
      <dc:date>2009-10-29T09:08:01Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225161#M178291</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I'm not even able to get Alfresco working with approach. What's happening is if I turn on the external authentication subsystem I can't even log in directly to the Alfrecso tomcat using admin/admin. If I comment out the authentication.chain, I can log in.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;CAS logs in fine, but get to it from /alfresco I get redirected back to /alfresco/faces/…, as guest. At best I get the login screen on the /alfresco side.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;There must be some configuration that I've got wrong, but I can't figure out what it is. This is using a fresh Alfresco 3.2r install. My logs don't show anything wrong - the state transitions in my CAS-server logs pretty much mimic what's in the login-webflow.xml. And my alfresco log pretty much has nothing in it past startup. Which I guess is not surprising since I don't have any debug entries for any authentication.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Nov 2009 15:33:37 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225161#M178291</guid>
      <dc:creator>cybertoast</dc:creator>
      <dc:date>2009-11-02T15:33:37Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225162#M178292</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I finally sort-of got /alfresco working by adding the httpRequestAuthFilter per &lt;/SPAN&gt;&lt;A href="http://forums.alfresco.com/en/viewtopic.php?f=9&amp;amp;t=21080&amp;amp;p=70120&amp;amp;hilit=cas+share&amp;amp;sid=721b39e0903cf2a03f71ffb6e5df32e6#p70120" rel="nofollow noopener noreferrer"&gt;http://forums.alfresco.com/en/viewtopic.php?f=9&amp;amp;t=21080&amp;amp;p=70120&amp;amp;hilit=cas+share&amp;amp;sid=721b39e0903cf2a03f71ffb6e5df32e6#p70120&lt;/A&gt;&lt;SPAN&gt;. But now when CAS redirects me back to alfresco, I get "java.lang.StackOverflowError", with the following:&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;java.lang.StackOverflowError&lt;BR /&gt;&lt;BR /&gt;Hide Details&lt;BR /&gt;&lt;BR /&gt;java.lang.StackOverflowError&lt;BR /&gt;at java.util.concurrent.ConcurrentHashMap$Segment.get(ConcurrentHashMap.java:338)&lt;BR /&gt;at java.util.concurrent.ConcurrentHashMap.get(ConcurrentHashMap.java:769)&lt;BR /&gt;at org.springframework.beans.factory.support.AbstractBeanFactory.getMergedBeanDefinition(AbstractBeanFactory.java:948)&lt;BR /&gt;at org.springframework.beans.factory.support.AbstractBeanFactory.getMergedBeanDefinition(AbstractBeanFactory.java:928)&lt;BR /&gt;at org.springframework.beans.factory.support.AbstractBeanFactory.getMergedBeanDefinition(AbstractBeanFactory.java:914)&lt;BR /&gt;at org.springframework.beans.factory.support.AbstractBeanFactory.getBean(AbstractBeanFactory.java:205)&lt;BR /&gt;at org.springframework.beans.factory.support.AbstractBeanFactory.getBean(AbstractBeanFactory.java:227)&lt;BR /&gt;at org.springframework.beans.factory.support.AbstractBeanFactory.getBean(AbstractBeanFactory.java:160)&lt;BR /&gt;at org.springframework.context.support.AbstractApplicationContext.getBean(AbstractApplicationContext.java:757)&lt;BR /&gt;at org.alfresco.repo.security.authentication.subsystems.SubsystemChainingAuthenticationComponent.getUsableAuthenticationComponents(SubsystemChainingAuthenticationComponent.java:84)&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;Also, when I go to localhost:8080/alfresco, and try to login with admin/admin I get:&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;"You have no access to Alfresco."&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Nov 2009 16:52:54 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225162#M178292</guid>
      <dc:creator>cybertoast</dc:creator>
      <dc:date>2009-11-02T16:52:54Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225163#M178293</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hi. Sorry for my late arrival to this discussion.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;jmwarfe: it looks like share is receiving an HTML response from the server, rather than the JSON response it is expecting. That would suggest that it is seeing a login page rather than the authenticated response. So it's probably that share isn't configured correctly to send the certificate.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Could you paste in the contents of&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;$CATALINA_HOME/shared/classes/alfresco/web-extension/webscript-framework-config-custom.xml&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;make sure it has exactly the path above.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Regarding the other questions, yes Web DAV authentication will require Alfresco's LDAP authentication subsystem to be included in your chain.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Nov 2009 17:29:49 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225163#M178293</guid>
      <dc:creator>dward</dc:creator>
      <dc:date>2009-11-02T17:29:49Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225164#M178294</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Rebuilding the Alfresco 3.2r source seems to have fixed a lot of stuff, at least making /alfresco work. I now have exactly the same condition as jmwarfe on /share:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;javax.servlet.ServletException: org.alfresco.web.site.exception.RequestContextException: Exception running UserFactory in HttpRequestContextFactory&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.servlet.DispatcherServlet.service(DispatcherServlet.java:146)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;javax.servlet.http.HttpServlet.service(HttpServlet.java:717)&lt;BR /&gt;&lt;BR /&gt;root cause&lt;BR /&gt;&lt;BR /&gt;org.alfresco.web.site.exception.RequestContextException: Exception running UserFactory in HttpRequestContextFactory&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.DefaultRequestContextFactory.newInstance(DefaultRequestContextFactory.java:117)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.FrameworkHelper.initRequestContext(FrameworkHelper.java:202)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.servlet.DispatcherServlet.service(DispatcherServlet.java:142)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;javax.servlet.http.HttpServlet.service(HttpServlet.java:717)&lt;BR /&gt;&lt;BR /&gt;root cause&lt;BR /&gt;&lt;BR /&gt;org.alfresco.web.site.exception.UserFactoryException: Unable to retrieve user from repository&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.AlfrescoUserFactory.loadUser(AlfrescoUserFactory.java:254)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.UserFactory.faultUser(UserFactory.java:176)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.UserFactory.faultUser(UserFactory.java:110)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.DefaultRequestContextFactory.newInstance(DefaultRequestContextFactory.java:93)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.FrameworkHelper.initRequestContext(FrameworkHelper.java:202)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.servlet.DispatcherServlet.service(DispatcherServlet.java:142)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;javax.servlet.http.HttpServlet.service(HttpServlet.java:717)&lt;BR /&gt;&lt;BR /&gt;root cause&lt;BR /&gt;&lt;BR /&gt;org.json.JSONException: A JSONObject text must begin with '{' at character 9 of &lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&amp;lt;!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "&lt;A href="http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd" rel="nofollow noopener noreferrer"&gt;http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd&lt;/A&gt;"&amp;gt;&lt;BR /&gt;&amp;lt;html xmlns="&lt;A href="http://www.w3.org/1999/xhtml" rel="nofollow noopener noreferrer"&gt;http://www.w3.org/1999/xhtml&lt;/A&gt;" lang="en"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;head&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;title&amp;gt;CAS &amp;amp;#8211; Central Authentication Service&amp;lt;/title&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;meta http-equiv="Content-Type" content="text/html; charset=utf-8" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;style type="text/css" media="screen"&amp;gt;@import 'css/cas.css'/**/;&amp;lt;/style&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!–[if gte IE 6]&amp;gt;&amp;lt;style type="text/css" media="screen"&amp;gt;@import 'css/ie_cas.css';&amp;lt;/style&amp;gt;&amp;lt;![endif]–&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;script type="text/javascript" src="js/common_rosters.js"&amp;gt;&amp;lt;/script&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;link rel="icon" href="/cas/favicon.ico" type="image/x-icon" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;/head&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;body id="cas" onload="init();"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;div id="header"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;h1 id="app-name"&amp;gt;Central Authentication Service (CAS)&amp;lt;/h1&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/div&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;div id="content"&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;form id="fm1" class="fm-v clearfix" action="/cas/login;jsessionid=DDDD7EDD6EC9AB9DA3DC58BACD6B0331?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin" method="post"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;div class="box" id="login"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– Congratulations on bringing CAS online!&amp;nbsp; The default authentication handler authenticates where usernames equal passwords: go ahead, try it out.&amp;nbsp; –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;h2&amp;gt;Enter your NetID and Password&amp;lt;/h2&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;div class="row"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;label for="username"&amp;gt;&amp;lt;span class="accesskey"&amp;gt;N&amp;lt;/span&amp;gt;etID:&amp;lt;/label&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;input id="username" name="username" class="required" tabindex="1" accesskey="n" type="text" value="" size="25" autocomplete="false"/&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/div&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;div class="row"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;label for="password"&amp;gt;&amp;lt;span class="accesskey"&amp;gt;P&amp;lt;/span&amp;gt;assword:&amp;lt;/label&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;input id="password" name="password" class="required" tabindex="2" accesskey="p" type="password" value="" size="25" autocomplete="off"/&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/div&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;div class="row check"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;input id="warn" name="warn" value="true" tabindex="3" accesskey="w" type="checkbox" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;label for="warn"&amp;gt;&amp;lt;span class="accesskey"&amp;gt;W&amp;lt;/span&amp;gt;arn me before logging me into other sites.&amp;lt;/label&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/div&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;div class="row btn-row"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;input type="hidden" name="lt" value="_cF5CF7323-9883-82D6-C026-FE85F627D357_kCD941794-A5E2-366C-0808-3AC0BADC4BB1" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;input type="hidden" name="_eventId" value="submit" /&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;input class="btn-submit" name="submit" accesskey="l" value="LOGIN" tabindex="4" type="submit" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;input class="btn-reset" name="reset" accesskey="c" value="CLEAR" tabindex="5" type="reset" /&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/div&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/div&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;div id="sidebar"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;p&amp;gt;For security reasons, please Log Out and Exit your web browser when you are done accessing services that require authentication!&amp;lt;/p&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;div id="list-languages"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;h3&amp;gt;Languages:&amp;lt;/h3&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;ul&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li class="first"&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=en"&amp;gt;English&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=es"&amp;gt;Spanish&amp;lt;/a&amp;gt;&amp;lt;/li&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=fr"&amp;gt;French&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=ru"&amp;gt;Russian&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=nl"&amp;gt;Nederlands&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=sv"&amp;gt;Svenskt&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=it"&amp;gt;Italiano&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=ur"&amp;gt;Urdu&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=zh_CN"&amp;gt;Chinese (Simplified)&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=de"&amp;gt;Deutsch&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=ja"&amp;gt;Japanese&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=hr"&amp;gt;Croatian&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=cs"&amp;gt;Czech&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=sl"&amp;gt;Slovenian&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=pl"&amp;gt;Polish&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;gt;&amp;lt;li&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=pt_BR"&amp;gt;Portuguese (Brazil)&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;li class="last"&amp;gt;&amp;lt;a href="login?service=http%3a%2f%2fsundar-desktop%2falfresco%2fwcs%2fwebframework%2fcontent%2fmetadata%3fuser%3dadmin&amp;amp;locale=tr"&amp;gt;Turkish&amp;lt;/a&amp;gt;&amp;lt;/li&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;gt;&amp;lt;/ul&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/div&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/div&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;/form&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;/div&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;div id="footer"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;div&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;p&amp;gt;Copyright &amp;amp;copy; 2005-2007 JA-SIG. All rights reserved.&amp;lt;/p&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;p&amp;gt;Powered by &amp;lt;a href="&lt;A href="http://www.ja-sig.org/products/cas/" rel="nofollow noopener noreferrer"&gt;http://www.ja-sig.org/products/cas/&lt;/A&gt;"&amp;gt;JA-SIG Central Authentication Service 3.3.4&amp;lt;/a&amp;gt;&amp;lt;/p&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/div&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;a href="&lt;A href="http://www.ja-sig.org" rel="nofollow noopener noreferrer"&gt;http://www.ja-sig.org&lt;/A&gt;" title="go to JA-SIG home page"&amp;gt;&amp;lt;img id="logo" src="images/ja-sig-logo.gif" width="118" height="31" alt="JA-SIG" title="go to JA-SIG home page" /&amp;gt;&amp;lt;/a&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/div&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;lt;/body&amp;gt;&lt;BR /&gt;&amp;lt;/html&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.json.JSONTokener.syntaxError(Unknown Source)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.json.JSONObject.&amp;lt;init&amp;gt;(Unknown Source)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.json.JSONObject.&amp;lt;init&amp;gt;(Unknown Source)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.AlfrescoUserFactory.loadUser(AlfrescoUserFactory.java:166)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.UserFactory.faultUser(UserFactory.java:176)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.UserFactory.faultUser(UserFactory.java:110)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.DefaultRequestContextFactory.newInstance(DefaultRequestContextFactory.java:93)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.FrameworkHelper.initRequestContext(FrameworkHelper.java:202)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;org.alfresco.web.site.servlet.DispatcherServlet.service(DispatcherServlet.java:142)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;javax.servlet.http.HttpServlet.service(HttpServlet.java:717)&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;My webscript-framework-config-custom.xml is:&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;&amp;nbsp; &amp;lt;config evaluator="string-compare" condition="Remote"&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;remote&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;!– SSL client certificate + trusted CAs. Optionally used to authenticate share to an external SSO system such as CAS –&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;keystore&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;path&amp;gt;alfresco/web-extension/alfresco-system.p12&amp;lt;/path&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;type&amp;gt;pkcs12&amp;lt;/type&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;password&amp;gt;password&amp;lt;/password&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/keystore&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;connector&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;id&amp;gt;alfrescoCookie&amp;lt;/id&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;name&amp;gt;Alfresco Connector&amp;lt;/name&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;description&amp;gt;Connects to an Alfresco instance using cookie-based authentication&amp;lt;/description&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;class&amp;gt;org.alfresco.connector.AlfrescoConnector&amp;lt;/class&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/connector&amp;gt;&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;id&amp;gt;alfresco&amp;lt;/id&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;name&amp;gt;Alfresco - user access&amp;lt;/name&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;description&amp;gt;Access to Alfresco Repository WebScripts that require user authentication&amp;lt;/description&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;connector-id&amp;gt;alfrescoCookie&amp;lt;/connector-id&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;endpoint-url&amp;gt;&lt;A href="http://myhost/alfresco/wcs" rel="nofollow noopener noreferrer"&gt;http://myhost/alfresco/wcs&lt;/A&gt;&amp;lt;/endpoint-url&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;identity&amp;gt;user&amp;lt;/identity&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;external-auth&amp;gt;true&amp;lt;/external-auth&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/endpoint&amp;gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; &amp;lt;/remote&amp;gt;&lt;BR /&gt;&amp;nbsp; &amp;lt;/config&amp;gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Nov 2009 22:32:07 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225164#M178294</guid>
      <dc:creator>cybertoast</dc:creator>
      <dc:date>2009-11-02T22:32:07Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225165#M178295</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hi dward, The CASServer has this in its log:&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;2009-11-02 18:19:01,300 DEBUG [org.jasig.cas.web.support.CasArgumentExtractor] - &amp;lt;Extractor generated service for: &lt;A href="http://sundar-desktop/alfresco/wcs/webframework/content/metadata?user=admin" rel="nofollow noopener noreferrer"&gt;http://sundar-desktop/alfresco/wcs/webframework/content/metadata?user=admin&lt;/A&gt;&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,300 DEBUG [org.jasig.cas.web.flow.InitialFlowSetupAction] - &amp;lt;Placing service in FlowScope: &lt;A href="http://sundar-desktop/alfresco/wcs/webframework/content/metadata?user=admin" rel="nofollow noopener noreferrer"&gt;http://sundar-desktop/alfresco/wcs/webframework/content/metadata?user=admin&lt;/A&gt;&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,300 DEBUG [org.jasig.cas.web.flow.InitialFlowSetupAction] - &amp;lt;Action 'InitialFlowSetupAction' completed execution; result is 'success'&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.adaptors.x509.web.flow.X509CertificateCredentialsNonInteractiveAction] - &amp;lt;Action 'X509CertificateCredentialsNonInteractiveAction' beginning execution&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.adaptors.x509.web.flow.X509CertificateCredentialsNonInteractiveAction] - &amp;lt;Certificates not found in request.&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.adaptors.x509.web.flow.X509CertificateCredentialsNonInteractiveAction] - &amp;lt;Action 'X509CertificateCredentialsNonInteractiveAction' completed execution; result is 'error'&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.web.flow.AuthenticationViaFormAction] - &amp;lt;Action 'AuthenticationViaFormAction' beginning execution&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.web.flow.AuthenticationViaFormAction] - &amp;lt;Executing setupForm&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.web.flow.AuthenticationViaFormAction] - &amp;lt;Creating new form object with name 'credentials'&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.web.flow.AuthenticationViaFormAction] - &amp;lt;Creating new instance of form object class [class org.jasig.cas.authentication.principal.UsernamePasswordCredentials]&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.web.flow.AuthenticationViaFormAction] - &amp;lt;Putting form object of type [class org.jasig.cas.authentication.principal.UsernamePasswordCredentials] in scope Flow with name 'credentials'&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.web.flow.AuthenticationViaFormAction] - &amp;lt;Creating new form errors for object with name 'credentials'&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.web.flow.AuthenticationViaFormAction] - &amp;lt;No property editor registrar set, no custom editors to register&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.web.flow.AuthenticationViaFormAction] - &amp;lt;Putting form errors instance in scope Flash&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.web.flow.AuthenticationViaFormAction] - &amp;lt;Action 'AuthenticationViaFormAction' completed execution; result is 'success'&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.web.flow.AuthenticationViaFormAction] - &amp;lt;Action 'AuthenticationViaFormAction' beginning execution&amp;gt;&lt;BR /&gt;2009-11-02 18:19:01,301 DEBUG [org.jasig.cas.web.flow.AuthenticationViaFormAction] - &amp;lt;Action 'AuthenticationViaFormAction' completed execution; result is 'success'&amp;gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;Does the "[org.jasig.cas.adaptors.x509.web.flow.X509CertificateCredentialsNonInteractiveAction] - &amp;lt;Certificates not found in request.&amp;gt;" indicate that there's a problem in certificates being handled properly? Or is this safe to ignore?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Nov 2009 23:30:53 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225165#M178295</guid>
      <dc:creator>cybertoast</dc:creator>
      <dc:date>2009-11-02T23:30:53Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225166#M178296</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Ok, what I have now:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;- Share is authenticating properly with the certificate. I got these lines in cas.log:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;2009-11-02 20:57:34,769 DEBUG [org.jasig.cas.adaptors.x509.authentication.handler.support.X509CredentialsAuthenticationHandler] - certificate was issued by t&lt;BR /&gt;rusted issuer&lt;BR /&gt;2009-11-02 20:57:34,769 DEBUG [org.jasig.cas.adaptors.x509.authentication.handler.support.X509CredentialsAuthenticationHandler] - this is an end-user certifi&lt;BR /&gt;cate&lt;BR /&gt;2009-11-02 20:57:34,769 DEBUG [org.jasig.cas.adaptors.x509.authentication.handler.support.X509CredentialsAuthenticationHandler] - Pattern Match: true [EMAILA&lt;BR /&gt;DDRESS=noc@company.de, CN=alfresco-system, OU=Network Operations, O=company UG, ST=somestate, C=DE] against [.*].&lt;BR /&gt;2009-11-02 20:57:34,770 DEBUG [org.jasig.cas.adaptors.x509.authentication.handler.support.X509CredentialsAuthenticationHandler] - cert[2] ok, setting as cred&lt;BR /&gt;entials candidate&lt;BR /&gt;2009-11-02 20:57:34,770 INFO [org.jasig.cas.adaptors.x509.authentication.handler.support.X509CredentialsAuthenticationHandler] - authentication OK; SSL clien&lt;BR /&gt;t authentication data meets criteria for cert[2]&lt;BR /&gt;2009-11-02 20:57:34,770 INFO [org.jasig.cas.authentication.AuthenticationManagerImpl] - AuthenticationHandler: org.jasig.cas.adaptors.x509.authentication.han&lt;BR /&gt;dler.support.X509CredentialsAuthenticationHandler successfully authenticated the user which provided the following credentials: org.jasig.cas.adaptors.x509.a&lt;BR /&gt;uthentication.principal.X509CertificateCredentials@454a8c&lt;BR /&gt;2009-11-02 20:57:34,770 INFO [org.jasig.cas.adaptors.x509.authentication.principal.X509CertificateCredentialsToIdentifierPrincipalResolver] - Creating princi&lt;BR /&gt;pal for: EMAILADDRESS=noc@company.de, CN=alfresco-system, OU=Network Operations, O=company, ST=somestate, C=DE&lt;BR /&gt;2009-11-02 20:57:34,840 INFO [org.jasig.cas.CentralAuthenticationServiceImpl] - Granted service ticket [ST-1-fljp791QoR4132GIrhfC-app01.company.de] for serv&lt;BR /&gt;ice [&lt;A href="https://app01.company.de/alfresco/wcs/webframework/content/metadata?user=matthias.name%40company.de" rel="nofollow noopener noreferrer"&gt;https://app01.company.de/alfresco/wcs/webframework/content/metadata?user=matthias.name%40company.de&lt;/A&gt;] for user [alfresco-system]&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;…but I still received the same error as jmwarfe when I try to access Share. Is it a problem with the&amp;nbsp; '@' sign in my username? We use multitenancy, so the sign is mandatory.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;- WebDAV is working again, thanks.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Matthias&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Nov 2009 09:56:54 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225166#M178296</guid>
      <dc:creator>matthias</dc:creator>
      <dc:date>2009-11-03T09:56:54Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225167#M178297</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Matthias, I wonder how you got your Share to send out the certificate. It seems (based on my logs) that I'm actually failing the X509CredentialsAuthenticationHandler in login-webflow and going on to the viewLoginForm action. But can't understand why. Do you have any suggestions? Did you have this problem before and solve the certificate handling somehow? Thanks much for any help.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Nov 2009 14:54:29 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225167#M178297</guid>
      <dc:creator>cybertoast</dc:creator>
      <dc:date>2009-11-03T14:54:29Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225168#M178298</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Matthias. It may well be that multi tenancy is stopping the feature from working. Although I still don't know why, if share is sending the certificate, it still claims to be getting HTML back from the user metadata call.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;All I can suggest is that we instrument share's client with further debug logging so we can work out what sequence of redirects are happening.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Do you feel up to adding some additional logging to &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;org.alfresco.connector.RemoteClient.service(URL, InputStream, OutputStream, HttpServletRequest, HttpServletResponse, ResponseStatus)&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;If we could see what URLs are being called, what redirects are happening, what cookies are being returned and what status codes are being received, we might be able to work out what's going wrong!&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 03 Nov 2009 15:14:19 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225168#M178298</guid>
      <dc:creator>dward</dc:creator>
      <dc:date>2009-11-03T15:14:19Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225169#M178299</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;BLOCKQUOTE class="jive-quote"&gt;Matthias, I wonder how you got your Share to send out the certificate. It seems (based on my logs) that I'm actually failing the X509CredentialsAuthenticationHandler in login-webflow and going on to the viewLoginForm action. But can't understand why. Do you have any suggestions? Did you have this problem before and solve the certificate handling somehow? Thanks much for any help.&lt;/BLOCKQUOTE&gt;&lt;BR /&gt;&lt;SPAN&gt;cybertoast: I configured everything as described in &lt;/SPAN&gt;&lt;A href="http://wiki.alfresco.com/wiki/Alfresco_With_mod_auth_cas" rel="nofollow noopener noreferrer"&gt;http://wiki.alfresco.com/wiki/Alfresco_With_mod_auth_cas&lt;/A&gt;&lt;SPAN&gt; (without Maven).&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Except one thing: I added the following to /etc/apache2/httpd.conf:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;SSLVerifyClient optional&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;SSLCACertificateFile /etc/ssl/certs/cacert.pem&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;SSLOptions +StdEnvVars +ExportCertData&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;This was the only way to make it work. Otherwise Apache seems not to send the incoming certificate properly.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;I got the same error as you before I made these changes, so maybe that solves your problem.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Try at first if you can login to the snoop.jsp example (bottom of wiki article) via the certificate. If this works, you're on a good way.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Matthias.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Nov 2009 14:54:18 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225169#M178299</guid>
      <dc:creator>matthias</dc:creator>
      <dc:date>2009-11-04T14:54:18Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225170#M178300</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;BLOCKQUOTE class="jive-quote"&gt;Do you feel up to adding some additional logging to &lt;BR /&gt;&lt;BR /&gt;org.alfresco.connector.RemoteClient.service(URL, InputStream, OutputStream, HttpServletRequest, HttpServletResponse, ResponseStatus)&lt;BR /&gt;&lt;BR /&gt;?&lt;BR /&gt;&lt;BR /&gt;If we could see what URLs are being called, what redirects are happening, what cookies are being returned and what status codes are being received, we might be able to work out what's going wrong!&lt;/BLOCKQUOTE&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Ok, I tried to set the logging but I only get results if I use org.alfresco.connector.RemoteClient=debug - going further like&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;org.alfresco.connector.RemoteClient.service gives no result. Am I doing something wrong?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;The result with RemoteClient=debug&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;16:25:37,223 DEBUG [org.alfresco.connector.RemoteClient] Executing (GET) &lt;A href="https://app01.company.de/alfresco/wcs/webframework/content/metadata?user=matthias.name%40company.de" rel="nofollow noopener noreferrer"&gt;https://app01.company.de/alfresco/wcs/webframework/content/metadata?user=matthias.name%40company.de&lt;/A&gt;&lt;BR /&gt;16:25:37,225 DEBUG [org.alfresco.connector.RemoteClient]&amp;nbsp; - OutputStream supplied - will stream response…&lt;BR /&gt;16:25:37,305 DEBUG [org.alfresco.connector.RemoteClient] Setting cookie header: MOD_AUTH_CAS_S=b5d6a2524928d27bd5ade0bed30742e6;CASTGC=TGT-25-7CNalUs5KSroXN3zXgWPcN0DchY0CSttWwqx3Wk4uniP05ZVsE-app01.company.de&lt;BR /&gt;16:25:37,502 DEBUG [org.alfresco.connector.RemoteClient] Response status code: 401&lt;BR /&gt;16:25:37,502 DEBUG [org.alfresco.connector.RemoteClient] Response encoding: Content-Type: text/html; charset=iso-8859-1&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;That's it. Not very helpful. &lt;span class="lia-unicode-emoji" title=":confused_face:"&gt;😕&lt;/span&gt;&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Nov 2009 15:37:23 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225170#M178300</guid>
      <dc:creator>matthias</dc:creator>
      <dc:date>2009-11-04T15:37:23Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225171#M178301</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Matthias, Thanks very much for your response. I've actually tried that, but still have no success on the client authentication part. &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;This is what I had to do to just get things sort of working:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;1. Apache default-ssl file (I'm using Ubuntu, so this may just be the httpd.conf file's :443 virtualhost on other systems):&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;SSLCertificateFile /etc/ssl/certs/localhost.crt&lt;BR /&gt;SSLCertificateKeyFile /etc/ssl/private/localhost.pem&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;SPAN&gt;In mod-enabled/ssl.conf, I added the JkMount /cas .. stuff, but also had to add JkMountCopy On:&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;JkMountCopy On&lt;BR /&gt;JkMount /cas casnode&lt;BR /&gt;JkMount /cas/* casnode&lt;BR /&gt;JkMount /examples casnode&lt;BR /&gt;JkMount /examples/* casnode&lt;BR /&gt;SSLVerifyClient optional&lt;BR /&gt;SSLCACertificateFile /etc/ssl/certs/cacert.pem&lt;BR /&gt;SSLOptions +StdEnvVars + ExportCertData&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;2. In my tomcat/conf/server.xml I had to add the keystore (otherwise casserver fails to start up, with errors about jsse.invalid_ssl_conf):&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; &amp;lt;Connector port="8444" protocol="HTTP/1.1" SSLEnabled="true"&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; maxHttpHeaderSize="8192" minSpareThreads="25" maxSpareThreads="75"&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; maxThreads="150" scheme="https" secure="true"&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; sslProtocol="TLS" connectionTimeout="20000"&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; clientauth="true" &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; keystoreFile="/etc/ssl/alfresco-system.p12"&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; keystoreType="PKCS12" keystorePass="password"&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; truststoreFile="/etc/ssl/alfresco-system.p12" &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; truststorePass="password" truststoreType="PKCS12"&lt;BR /&gt;&amp;nbsp;&amp;nbsp; /&amp;gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;When I try to connect to the tomcat server directly (&lt;/SPAN&gt;&lt;A href="http://myhost:8444/cas/login" rel="nofollow noopener noreferrer"&gt;http://myhost:8444/cas/login&lt;/A&gt;&lt;SPAN&gt;) I get a "SSL peer cannot verify your certificate. (Error code: ssl_error_bad_cert_alert)" from firefox. This is because I've set clientauth="true". If I set clientauth="want", then I get the CAS login form.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;So basically I'm unable to get the client authentication using the pkcs12 alfresco-system.p12 keystore.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I thought maybe this was because the alfesco-system cert has a CN of alfresco-system, and so changed this to my DNS. But did not make any difference.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I also tried to import the /etc/ssl/certs/cacert.pem into my keystore using keytool:&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;keytool –import -alias alfresco-system -keystore /etc/ssl/keystore -file /etc/ssl/certs/cacert.pem&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;SPAN&gt;But this caused jsse.invalid_ssl_conf and "no available certifice or key corresponds to the ssl cipher suites which are enabled" during startup of casserver.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I'm sure there's something relatively simple that I'm missing, but just can't figure out what. The fact that I've been staring at this for several days is probably not helping either &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://connect.hyland.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Thanks for your help, anyway!&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Nov 2009 15:53:04 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225171#M178301</guid>
      <dc:creator>cybertoast</dc:creator>
      <dc:date>2009-11-04T15:53:04Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225172#M178302</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;mathias&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;That at least tells us that it's getting a status 401 response from alfresco, even for an authenticated request with a CAS cookie in place.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;We believe this may mean that the external authentication subsystem has become broken, ironically due to recent changes made to support multi tennancy.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I have logged&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://issues.alfresco.com/jira/browse/ETHREEOH-3265" rel="nofollow noopener noreferrer"&gt;https://issues.alfresco.com/jira/browse/ETHREEOH-3265&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;cybertoast. You are deviating away from the supported instructions and I can't help you. You shouldn't be using the keystore at all with tomcat - this should be configured in apache and you should switch tomcat authentication off as it says in the instructions. I also hope you started with a virgin tomcat zip as the installation requires and not some Ubuntu packaged version. And we don't need JkMountCopy On.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Nov 2009 16:31:29 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225172#M178302</guid>
      <dc:creator>dward</dc:creator>
      <dc:date>2009-11-04T16:31:29Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225173#M178303</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;dward, thanks for the response. My tomcat is the zip file from apache (apache-tomcat-6.0.20.tar.gz), not the ubuntu packaged one.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;When using the standard server.xml (without keystore definitions), but with tomcatAuthentication="false", I get:&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;SEVERE: Failed to load keystore type JKS with path /root/.keystore due to /root/.keystore (No such file or directory)java.io.FileNotFoundException: /root/.keystore (No such file or directory)&lt;BR /&gt;&amp;nbsp; at java.io.FileInputStream.open(Native Method)&lt;BR /&gt;&amp;nbsp; at java.io.FileInputStream.&amp;lt;init&amp;gt;(FileInputStream.java:106)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.jsse.JSSESocketFactory.getStore(JSSESocketFactory.java:341)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.jsse.JSSESocketFactory.getKeystore(JSSESocketFactory.java:263)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.jsse.JSSESocketFactory.getKeyManagers(JSSESocketFactory.java:473)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.jsse.JSSESocketFactory.init(JSSESocketFactory.java:413)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.jsse.JSSESocketFactory.createSocket(JSSESocketFactory.java:129)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.JIoEndpoint.init(JIoEndpoint.java:503)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.JIoEndpoint.start(JIoEndpoint.java:526)&lt;BR /&gt;&amp;nbsp; at org.apache.coyote.http11.Http11Protocol.start(Http11Protocol.java:203)&lt;BR /&gt;&amp;nbsp; at org.apache.catalina.connector.Connector.start(Connector.java:1131)&lt;BR /&gt;&amp;nbsp; at org.apache.catalina.core.StandardService.start(StandardService.java:531)&lt;BR /&gt;&amp;nbsp; at org.apache.catalina.core.StandardServer.start(StandardServer.java:710)&lt;BR /&gt;&amp;nbsp; at org.apache.catalina.startup.Catalina.start(Catalina.java:583)&lt;BR /&gt;&amp;nbsp; at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)&lt;BR /&gt;&amp;nbsp; at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)&lt;BR /&gt;&amp;nbsp; at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)&lt;BR /&gt;&amp;nbsp; at java.lang.reflect.Method.invoke(Method.java:597)&lt;BR /&gt;&amp;nbsp; at org.apache.catalina.startup.Bootstrap.start(Bootstrap.java:288)&lt;BR /&gt;&amp;nbsp; at org.apache.catalina.startup.Bootstrap.main(Bootstrap.java:413)&lt;BR /&gt;Nov 4, 2009 12:28:14 PM org.apache.coyote.http11.Http11Protocol start&lt;BR /&gt;SEVERE: Error starting endpoint&lt;BR /&gt;java.io.FileNotFoundException: /root/.keystore (No such file or directory)&lt;BR /&gt;&amp;nbsp; at java.io.FileInputStream.open(Native Method)&lt;BR /&gt;&amp;nbsp; at java.io.FileInputStream.&amp;lt;init&amp;gt;(FileInputStream.java:106)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.jsse.JSSESocketFactory.getStore(JSSESocketFactory.java:341)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.jsse.JSSESocketFactory.getKeystore(JSSESocketFactory.java:263)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.jsse.JSSESocketFactory.getKeyManagers(JSSESocketFactory.java:473)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.jsse.JSSESocketFactory.init(JSSESocketFactory.java:413)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.jsse.JSSESocketFactory.createSocket(JSSESocketFactory.java:129)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.JIoEndpoint.init(JIoEndpoint.java:503)&lt;BR /&gt;&amp;nbsp; at org.apache.tomcat.util.net.JIoEndpoint.start(JIoEndpoint.java:526)&lt;BR /&gt;&amp;nbsp; at org.apache.coyote.http11.Http11Protocol.start(Http11Protocol.java:203)&lt;BR /&gt;&amp;nbsp; at org.apache.catalina.connector.Connector.start(Connector.java:1131)&lt;BR /&gt;&amp;nbsp; at org.apache.catalina.core.StandardService.start(StandardService.java:531)&lt;BR /&gt;&amp;nbsp; at org.apache.catalina.core.StandardServer.start(StandardServer.java:710)&lt;BR /&gt;&amp;nbsp; at org.apache.catalina.startup.Catalina.start(Catalina.java:583)&lt;BR /&gt;&amp;nbsp; at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method)&lt;BR /&gt;&amp;nbsp; at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessorImpl.java:39)&lt;BR /&gt;&amp;nbsp; at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethodAccessorImpl.java:25)&lt;BR /&gt;&amp;nbsp; at java.lang.reflect.Method.invoke(Method.java:597)&lt;BR /&gt;&amp;nbsp; at org.apache.catalina.startup.Bootstrap.start(Bootstrap.java:288)&lt;BR /&gt;&amp;nbsp; at org.apache.catalina.startup.Bootstrap.main(Bootstrap.java:413)&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;This is the ONLY reason I deviated from the wiki - I could not figure out any other way to make this work (and basically followed the tomcat instructions on the CAS site, the one where you explicitly say "don't worry about tomcat configuration steps"). &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://connect.hyland.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Anyway, I don't have a keystore file by default (the /root/.keystore), so how to proceed?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Again, thanks. I'm completely flummoxed and have had no luck getting this to work, so any help is hugely appreciated!&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Nov 2009 17:32:44 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225173#M178303</guid>
      <dc:creator>cybertoast</dc:creator>
      <dc:date>2009-11-04T17:32:44Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225174#M178304</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Crap, I'm an idiot! Sorry, I had uncommented the SSL portion of the original tomcat server.xml file. SO SO SORRY! Ok, I'm trying it all out from scratch again and let's see if it's all just because of my stupidity!&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Nov 2009 17:39:59 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225174#M178304</guid>
      <dc:creator>cybertoast</dc:creator>
      <dc:date>2009-11-04T17:39:59Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225175#M178305</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Ok, starting from scratch, this is what happens:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;1. If I try to navigate to &lt;/SPAN&gt;&lt;A href="http://myhost/cas/login" rel="nofollow noopener noreferrer"&gt;http://myhost/cas/login&lt;/A&gt;&lt;SPAN&gt;, I get login screen. &lt;/SPAN&gt;&lt;A href="https://myhost/cas/login" rel="nofollow noopener noreferrer"&gt;https://myhost/cas/login&lt;/A&gt;&lt;SPAN&gt; gives me &lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;Not Found&lt;BR /&gt;the requested URL /cas/login was not found on this server&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;SPAN&gt;The only way to get this to work is to add JkMountCopy On in my default-ssl virtualhost. Adding this to my ssl.conf also does not work.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;I had to change the SSLCACertificatePath /etc/ssl/certs/ to SSLCACertificateFile /etc/ssl/certs/cacert.pem (like matthias suggested as well), since otherwise Firefox and Safari both just hang on "loading…" connecting to the URL.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I set the SSLCertificateFile to /etc/ssl/certs/localhost.crt and SSLCertificateKeyFile to /etc/ssl/private/localhost.key. These are the cert/key generated in Step 3 of the wiki instructions.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;2. I have steps 2, 3 and 4 completed, and have Apache, CASServer and all certificates in place. mod-jk redirects my requests to /cas/login. Trying the snoop.jsp example redirects me to /cas/login and my ldap auth works.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;3. Trying out client authentication by importing the alfresco-system.p12 keystore into Firefox, cleaning out cookies and going back to &lt;/SPAN&gt;&lt;A href="http://myhost/examples/jsp/snp/snoop.jsp" rel="nofollow noopener noreferrer"&gt;http://myhost/examples/jsp/snp/snoop.jsp&lt;/A&gt;&lt;SPAN&gt; takes me to &lt;/SPAN&gt;&lt;A href="https://myhost/cas/login?service=" rel="nofollow noopener noreferrer"&gt;https://myhost/cas/login?service=&lt;/A&gt;&lt;SPAN&gt;…&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;So importing the alfresco-system.p12 keystore into Firefox does not seem to have any effect &lt;img id="smileysad" class="emoticon emoticon-smileysad" src="https://connect.hyland.com/i/smilies/16x16_smiley-sad.png" alt="Smiley Sad" title="Smiley Sad" /&gt;&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Any ideas?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Nov 2009 18:23:36 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225175#M178305</guid>
      <dc:creator>cybertoast</dc:creator>
      <dc:date>2009-11-04T18:23:36Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225176#M178306</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Hmm, seems you should get CAS-Server working at first.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;- You don't need JkMountCopy at all. (btw: I'm using Ubuntu as well)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- Use "JkMount /cas* worker1" in your SSL VHost.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- Create /etc/apache/workers.properties with the following:&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;worker.list=worker1&lt;BR /&gt;worker.default.port=8009&lt;BR /&gt;worker.default.host=localhost&lt;BR /&gt;worker.default.type=ajp13&lt;BR /&gt;worker.default.lbfactor=1&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;Put the following in /etc/apache/httpd.conf&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;JkWorkersFile /etc/apache2/workers.properties&lt;BR /&gt;&lt;BR /&gt;# Where to put jk logs&lt;BR /&gt;JkLogFile /var/log/apache2/mod_jk.log&lt;BR /&gt;&lt;BR /&gt;# Set the jk log level [debug/error/info]&lt;BR /&gt;JkLogLevel info&lt;BR /&gt;&lt;BR /&gt;# Select the log format&lt;BR /&gt;JkLogStampFormat "[%a %b %d %H:%M:%S %Y] "&lt;BR /&gt;&lt;BR /&gt;# JkOptions indicate to send SSL KEY SIZE,&lt;BR /&gt;JkOptions +ForwardKeySize -ForwardDirectories&lt;BR /&gt;&lt;BR /&gt;# JkRequestLogFormat set the request format&lt;BR /&gt;JkRequestLogFormat "%w %V %T"&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;That is enough to make Apache work with CAS.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;After that you can protect some dirs with mod_auth_cas.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;Try that with the /examples directory of Tomcat. Check, if you can see your username there.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Nov 2009 22:08:54 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225176#M178306</guid>
      <dc:creator>matthias</dc:creator>
      <dc:date>2009-11-04T22:08:54Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225177#M178307</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;dward,&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;* Removed all JkMountCopy On &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;* Removed my JkMount /cas* casnode from /etc/apache2/mods-enabled/ssl.conf and moved JkMount /cas* casnode to /etc/apache2/sites-enabled/default-ssl &lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;* Left JkMount /examples* casnode in /etc/apache2/mods-enabled/ssl.conf&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;* Added your suggestions to httpd.conf (basically it was an empty file, and now it only has the stuff you suggested)&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;* Removed JkWorkersFile and JkLogFile from /etc/apache2/mods-enabled/jk.conf (since they're now in httpd.conf) &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;My /etc/apache2/workers.properties file:&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;worker.list=ajp12, ajp13, casnode, alfnode&amp;nbsp; # I know I only need casnode and alfnode&lt;BR /&gt;worker.casnode.port=8009&lt;BR /&gt;worker.casnode.host=myhost&lt;BR /&gt;worker.casnode.type=ajp13&lt;BR /&gt;worker.casnode.lbfactor=1&lt;BR /&gt;worker.alfnode.port=8010&lt;BR /&gt;worker.alfnode.host=myhost&lt;BR /&gt;worker.alfnode.type=ajp13&lt;BR /&gt;worker.inprocess.type=jni&lt;BR /&gt;worker.inprocess.class_path=$(workers.tomcat_home)$(ps)lib$(ps)tomcat.jar&lt;BR /&gt;worker.inprocess.cmd_line=start&lt;BR /&gt;worker.inprocess.jvm_lib=$(workers.java_home)$(ps)jre$(ps)bin$(ps)classic$(ps)jvm.dll&lt;BR /&gt;worker.inprocess.stdout=$(workers.tomcat_home)$(ps)logs$(ps)inprocess.stdout&lt;BR /&gt;worker.inprocess.stderr=$(workers.tomcat_home)$(ps)logs$(ps)inprocess.stderr&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;This makes CAS work with apache. I believe the addition of the JkMount /cas* casnode into the default.ssl file is what made the difference. (Maybe because sites-enabled is what's included last in apache2.conf?).&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;* Ensured that there is nothing in Your Certificates in Firefox's Certificate Manager.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;* Go to &lt;/SPAN&gt;&lt;A href="http://myhost/examples/jsp/snp/snoop.jsp" rel="nofollow noopener noreferrer"&gt;http://myhost/examples/jsp/snp/snoop.jsp&lt;/A&gt;&lt;SPAN&gt; -&amp;gt; Get CAS login form&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;* Clear all cookies, import alfresco-system.p12 into Firefox's Your Certificates, and I get the CAS login form, same as before. And in my CAS log is:&lt;/SPAN&gt;&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;2009-11-04 18:06:19,472 DEBUG [org.jasig.cas.adaptors.x509.web.flow.X509CertificateCredentialsNonInteractiveAction] - &amp;lt;Certificates not found in request.&amp;gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;&lt;SPAN&gt;Thanks VERY VERY much for helping with this!&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Nov 2009 23:10:57 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225177#M178307</guid>
      <dc:creator>cybertoast</dc:creator>
      <dc:date>2009-11-04T23:10:57Z</dc:date>
    </item>
    <item>
      <title>Re: Share with mod_auth_cas not working</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225178#M178308</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;BLOCKQUOTE class="jive-quote"&gt;* Ensured that there is nothing in Your Certificates in Firefox's Certificate Manager.&lt;BR /&gt;* Go to &lt;A href="http://myhost/examples/jsp/snp/snoop.jsp" rel="nofollow noopener noreferrer"&gt;http://myhost/examples/jsp/snp/snoop.jsp&lt;/A&gt; -&amp;gt; Get CAS login form&lt;BR /&gt;* Clear all cookies, import alfresco-system.p12 into Firefox's Your Certificates, and I get the CAS login form, same as before. And in my CAS log is:&lt;BR /&gt;&lt;PRE class="language-none line-numbers"&gt;&lt;CODE&gt;&lt;BR /&gt;2009-11-04 18:06:19,472 DEBUG [org.jasig.cas.adaptors.x509.web.flow.X509CertificateCredentialsNonInteractiveAction] - &amp;lt;Certificates not found in request.&amp;gt;&lt;BR /&gt;&lt;SPAN class="line-numbers-rows"&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;SPAN&gt;‍&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;BR /&gt;Thanks VERY VERY much for helping with this!&lt;/BLOCKQUOTE&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;cybertoast, what you didn't tell me:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- Can you login via CAS to snoop.jsp (without certificate, only with username+pass!)?&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;- If yes, do you see your username there?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Do this first. After that, we can check the certificate stuff.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Nov 2009 13:24:34 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/share-with-mod-auth-cas-not-working/m-p/225178#M178308</guid>
      <dc:creator>matthias</dc:creator>
      <dc:date>2009-11-05T13:24:34Z</dc:date>
    </item>
  </channel>
</rss>

