I've been struggling to implement a setup like this (albeit using Alfresco 2.9B) for quite a while now and have so far failed to get anywhere.
Having read this thread, I have to admit that I'm thoroughly confused. You talk about CAS/SSO, but at the same time you describe the import of user information from an LDAP server. Isn't one of the points of using CAS that you don't have to store and maintain user data on these systems?
The way I've understood CAS/SSO to work is that the application redirects to the CAS server, which then binds to the LDAP server and establishes credentials of the user that way. The only things to get passed back and forth between the application (i.e. Alfresco) and the CAS server should be service tickets.
It seems to me what you're configuring is an LDAP authentication - could someone please fill me in on what I am missing?
f.