MFA with Yubikey and WebAuthn

91 views
Skip to first unread message

Hartmut Trüe

unread,
Sep 29, 2023, 3:59:21 AM9/29/23
to CAS Community
Hello,

I am trying to get CAS to work with Yubikey. I have configured FIDO2 WebAuthn and it seems to work so far, no error messages in cas.log during login process. 
But when I try to register the yubikey on the "register device" page, I get "csrfToken is not defined".

CAS is running behind an Apache reverse proxy, and login without mfa or with simple-mfa is working.

Any ideas?

Regards,
Hartmut

Hartmut Trüe

unread,
Oct 19, 2023, 8:10:25 AM10/19/23
to CAS Community, Hartmut Trüe
No one uses Yubikey? No idea?

Regards,
Hartmut

John

unread,
Oct 19, 2023, 8:53:01 AM10/19/23
to CAS Community, Hartmut Trüe
Sounds like you are not on lastest or at least 6.6.10. There was a bug in versions previous

Hartmut Trüe

unread,
Oct 24, 2023, 2:34:01 AM10/24/23
to CAS Community, John, Hartmut Trüe
John, at the Moment it is 6.6.13 ... and not working.

I don't know what else is missing.

Regards, Hartmut

Hartmut Trüe

unread,
Oct 27, 2023, 4:30:55 AM10/27/23
to CAS Community, Hartmut Trüe, John
Hello,

the Problem was based on customized templates that lacked updates to newer versions. After i applied the changes to the customized templates, it now works fine.

Regards,
Hartmut

Frédéric Dussurget

unread,
Oct 27, 2023, 10:27:31 AM10/27/23
to CAS Community, Hartmut Trüe, John
Hi,
I'm interessed in this issue : what did you set as js files in your custom_theme.properties ?
this line :
cas.standard.js.file=/js/cas.js,/js/material.js
I tried to add webauthn/webauthn.js but I had to remove it because I had a failure ...
regards,

Hartmut Trüe

unread,
Oct 30, 2023, 5:29:46 AM10/30/23
to CAS Community, Frédéric Dussurget, Hartmut Trüe, John
Hi Frédéric,

we did it according to the instructions in the documentation:

and let it point to our theme:

cas.standard.css.file=/themes/uhi/css/cas.css
cas.standard.js.file=/themes/uhi/js/cas.js
cas.logo.file=/themes/uhi/images/logo_klein.png

Regards,
Hartmut
Reply all
Reply to author
Forward
0 new messages