You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to CAS Community
We have an authentication issue on CAS 6.2 on Safari browsers, more generally on iOS devices. Each client has correctly configured its own iframe and customizations on the service part on CAS. The federated sites all have different domains and all call the same server:
SSO works perfectly as long as the user is not using an iPad or iPhone. In this case the default "prevent cross-site checking" setting is disabled and does not allow the iframe to set the cookie correctly.
How can I fix this on the server side? Is it possible to manage the virtual hosts on Tomcat on the CAS Server or is there an alternative solution? In fact I was thinking to configure the virtual hosts so that each site calls the CAS with the same domain: