<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SSO with mod_auth_cas in Alfresco Archive</title>
    <link>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229439#M182569</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;This seems not to resolve my issue.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I'm using mod_auth_cas, not CAS Server itself. &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;It seems, that I don't get REMOTE_USER properly to HTTPRequestAuthenticationFilter. I've also set "JkEnvVar REMOTE_USER" in my VHost.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Can I debug this somehow?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 25 Aug 2009 14:49:57 GMT</pubDate>
    <dc:creator>matthias</dc:creator>
    <dc:date>2009-08-25T14:49:57Z</dc:date>
    <item>
      <title>SSO with mod_auth_cas</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229435#M182565</link>
      <description>Hi all,I successfully configured v3.2 with LDAP and multi-tenant support. Now I want to archive SSO with mod_auth_cas as described in http://wiki.alfresco.com/wiki/SSO , but it doesn't work.- I can login with user.name@tenantdomain.com and the user password- I've configured Apache to proxy Tomcat vi</description>
      <pubDate>Thu, 13 Aug 2009 15:57:35 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229435#M182565</guid>
      <dc:creator>matthias</dc:creator>
      <dc:date>2009-08-13T15:57:35Z</dc:date>
    </item>
    <item>
      <title>Re: SSO with mod_auth_cas</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229436#M182566</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;*bump*&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Anyone?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 17 Aug 2009 11:26:50 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229436#M182566</guid>
      <dc:creator>matthias</dc:creator>
      <dc:date>2009-08-17T11:26:50Z</dc:date>
    </item>
    <item>
      <title>Re: SSO with mod_auth_cas</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229437#M182567</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Is there noone who can help me? I'm really stuck on this.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Aug 2009 08:34:32 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229437#M182567</guid>
      <dc:creator>matthias</dc:creator>
      <dc:date>2009-08-20T08:34:32Z</dc:date>
    </item>
    <item>
      <title>Re: SSO with mod_auth_cas</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229438#M182568</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;See &lt;/SPAN&gt;&lt;A href="http://forums.alfresco.com/en/viewtopic.php?f=36&amp;amp;t=12666&amp;amp;p=42194#p42194" rel="nofollow noopener noreferrer"&gt;http://forums.alfresco.com/en/viewtopic.php?f=36&amp;amp;t=12666&amp;amp;p=42194#p42194&lt;/A&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Aug 2009 09:49:00 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229438#M182568</guid>
      <dc:creator>dward</dc:creator>
      <dc:date>2009-08-20T09:49:00Z</dc:date>
    </item>
    <item>
      <title>Re: SSO with mod_auth_cas</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229439#M182569</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;This seems not to resolve my issue.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I'm using mod_auth_cas, not CAS Server itself. &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;It seems, that I don't get REMOTE_USER properly to HTTPRequestAuthenticationFilter. I've also set "JkEnvVar REMOTE_USER" in my VHost.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Can I debug this somehow?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 25 Aug 2009 14:49:57 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229439#M182569</guid>
      <dc:creator>matthias</dc:creator>
      <dc:date>2009-08-25T14:49:57Z</dc:date>
    </item>
    <item>
      <title>Re: SSO with mod_auth_cas</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229440#M182570</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I recently set up mod_auth_cas (as opposed to mod_cas that was mentioned in the old Wiki) and found out that the header that it sends through is called "CAS-User". REMOTE_USER is a CGI environment variable, not a header. mod_jk actually maps this to request.getRemoteUser() if you turn off tomcat authentication in the JK connector. Hope this helps.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 25 Aug 2009 15:56:59 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229440#M182570</guid>
      <dc:creator>dward</dc:creator>
      <dc:date>2009-08-25T15:56:59Z</dc:date>
    </item>
    <item>
      <title>Re: SSO with mod_auth_cas</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229441#M182571</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;It still doesn't work. &lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Can you confirm that the configuration on &lt;/SPAN&gt;&lt;A href="http://wiki.alfresco.com/wiki/SSO" rel="nofollow noopener noreferrer"&gt;http://wiki.alfresco.com/wiki/SSO&lt;/A&gt;&lt;SPAN&gt; is still correct?&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;I tried to use "CAS-User" instead of "REMOTE_USER" as httpServletRequestAuthHeaderName, but no go. Tomcat authentication is off.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Is there anything else I can try?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 25 Aug 2009 17:37:25 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229441#M182571</guid>
      <dc:creator>matthias</dc:creator>
      <dc:date>2009-08-25T17:37:25Z</dc:date>
    </item>
    <item>
      <title>Re: SSO with mod_auth_cas</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229442#M182572</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;It works for me.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;It's probably easier to go back to basics.&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Try protecting the tomcat /examples application with CAS. If you browse to the 'snoop' JSP example you should see a Remote User value. If you browse to the servlet headers example you should see CAS-User. If not, then check your CAS configuration.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 26 Aug 2009 09:09:31 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229442#M182572</guid>
      <dc:creator>dward</dc:creator>
      <dc:date>2009-08-26T09:09:31Z</dc:date>
    </item>
    <item>
      <title>Re: SSO with mod_auth_cas</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229443#M182573</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;Ahh, thanks, dward!&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;The solution was:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;1. The variable given to Tomcat is 'CAS-User' and not 'REMOTE_USER'.&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;2. Location /alfresco wasn't correctly protected by mod_auth_cas (thanks for the tip with the 'snoop' app!)&lt;/SPAN&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;SPAN&gt;Now SSO for Alfresco works. Unfortunately not for Share. Does Share use another login configuration?&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 27 Aug 2009 13:54:42 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229443#M182573</guid>
      <dc:creator>matthias</dc:creator>
      <dc:date>2009-08-27T13:54:42Z</dc:date>
    </item>
    <item>
      <title>Re: SSO with mod_auth_cas</title>
      <link>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229444#M182574</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;SPAN&gt;I'm working on that one. We'll need a new connector for Share that asserts the user identity to Alfresco. And the trouble is that this must be done in a secure way or otherwise anyone could hack in with &amp;amp;user=admin! I have an idea and will report back when I next get the chance.&lt;/SPAN&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 27 Aug 2009 14:27:30 GMT</pubDate>
      <guid>https://connect.hyland.com/t5/alfresco-archive/sso-with-mod-auth-cas/m-p/229444#M182574</guid>
      <dc:creator>dward</dc:creator>
      <dc:date>2009-08-27T14:27:30Z</dc:date>
    </item>
  </channel>
</rss>

