You are currently accessing CAS over a non-secure connection. Single Sign On WILL NOT WORK. In order to have single sign on work, you MUST log in over HTTPS.
Hi Zach,
Is the CAS server behind a load balancer? If so, is the connection https end-to-end (i.e. from client to load balancer and from load balancer to back-end server)? If not – there was a previous post on this list which may be of use for this:
https://groups.google.com/a/apereo.org/forum/#!topic/cas-user/aey5xVaTLGI
P.S. Apologies if my message comes through after someone else has answered. Sometimes my messages to this list are delayed a bit.
Paul Chauvet, CISSP
Information Security Officer
State University of New York at New Paltz

--
- Website: https://apereo.github.io/cas
- Gitter Chatroom: https://gitter.im/apereo/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
---
You received this message because you are subscribed to the Google Groups "CAS Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email to
cas-user+u...@apereo.org.
To view this discussion on the web visit
https://groups.google.com/a/apereo.org/d/msgid/cas-user/84bc64d8-d47a-423b-9b3d-e6cdfe2db687%40apereo.org.