--
- Website: https://apereo.github.io/cas
- Gitter Chatroom: https://gitter.im/apereo/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
---
You received this message because you are subscribed to the Google Groups "CAS Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email to cas-user+u...@apereo.org.
To view this discussion on the web visit https://groups.google.com/a/apereo.org/d/msgid/cas-user/3B7E953C-586C-41E3-BB3A-73A53D433AB0%40wichita.edu.
Yes.
# OpenID Authentication
cas.authn.oidc.issuer=http://cas-dev.wichita.edu/cas/oidc
# Skew ID tokens in minutes
cas.authn.oidc.skew=5
cas.authn.oidc.jwksFile=file:/etc/cas/config/keystore.jwks
cas.authn.oidc.jwksCacheInMinutes=60
#cas.authn.oidc.dynamicClientRegistrationMode=OPEN|PROTECTED
cas.authn.oidc.dynamicClientRegistrationMode=PROTECTED
cas.authn.oidc.subjectTypes=public,pairwise
Erik Mallory
Server Analyst
Wichita State University
To view this discussion on the web visit
https://groups.google.com/a/apereo.org/d/msgid/cas-user/375F9DAF-027B-4CE0-A5F3-AE84255B3C99%40gmail.com.
To view this discussion on the web visit https://groups.google.com/a/apereo.org/d/msgid/cas-user/E63C583B-638A-4E54-A7C4-BC772DF53CB2%40wichita.edu.
I double checked that I didn’t have an errant file somewhere that would override the config. I un jared the cas.war file and grepped for cas.example.org JIC.
All settings are loaded from the location below. CAS is running with embedded tomcat and is started by systemd.
# The configuration directory where CAS should monitor to locate settings.
spring.cloud.config.server.native.searchLocations=file:///etc/cas/config
/bin/java --add-modules java.se --add-exports java.base/jdk.internal.ref=ALL-UNNAMED --add-opens java.base/java.lang=ALL-UNNAMED --add-opens java.base/java.nio=ALL-UNNAMED --add-opens java.base/sun.nio.ch=ALL-UNNAMED --add-opens java.management/sun.management=ALL-UNNAMED --add-opens jdk.management/com.sun.management.internal=ALL-UNNAMED -Dhttp.proxySet=true -Dhttps.proxySet=true -Dhttp.proxyHost=proxysvc-501.wichita.edu -Dhttps.proxyHost=proxysvc-501.wichita.edu -Dhttp.proxyPort=8080 -Dhttps.proxyPort=8080 -Djava.util.logging.config.file=/etc/cas/config/logging.properties -jar /data/cas/bin/cas.war
Thanks Again,
To view this discussion on the web visit
https://groups.google.com/a/apereo.org/d/msgid/cas-user/DF7A72D8-CDF2-4BDA-B302-8A9E5A1A9E48%40gmail.com.
I did find these…
cd /etc/
[root@appdev-523 etc]# grep -r cas.example *
cas/config/services/RegexRegisteredService-8396761148980578304.json: serviceId: https://cas.example.org:8443/cas/oauth2.0/callbackAuthorize.*
cas/config/services/RegexRegisteredService-7398083621929947136.json: serviceId: https://cas.example.org:8443/cas/oauth2.0/callbackAuthorize.*
cas/config/services/RegexRegisteredService-1905997417559537664.json: serviceId: https://cas.example.org:8443/cas/oauth2.0/callbackAuthorize.*
cas/config/services/RegexRegisteredService-4418765845257222144.json: serviceId: https://cas.example.org:8443/cas/oauth2.0/callbackAuthorize.*
cas/config/services/RegexRegisteredService-5291673557665746944.json: serviceId: https://cas.example.org:8443/cas/oauth2.0/callbackAuthorize.*
cas/config/services/RegexRegisteredService-7671336329000167424.json: serviceId: https://cas.example.org:8443/cas/oauth2.0/callbackAuthorize.*
These are apparently auto-generated. As far as I know I have not configured CAS to create these service entries, nor do they show up in the management interface.
The time stamps on the files appear to be related to restarts. This may be by design. I still can’t find the bit to set the proper server name though.
To view this discussion on the web visit
https://groups.google.com/a/apereo.org/d/msgid/cas-user/1FA38A82-12AA-4D92-BE6F-25755490942A%40wichita.edu.