[cas-dev] CAS, Ldaptive & LPPE

16 views
Skip to first unread message

Misagh Moayyed

unread,
Mar 14, 2013, 10:03:43 AM3/14/13
to cas...@lists.jasig.org
Team,
For the next release, I am wondering if we should consider swapping out
the current ldap integration with that of ldaptive? Among other things,
this specifically would help with the future implementations of LPPE in
the way ldaptive provides support for account policy detection and would
reduce a whole lot of code that otherwise would have to be duplicated.
Marvin has already provided the module [1] and merging that in should be
fairly straight forward.

Seems like this would be the suitable time and a nice addition to the next
release.

-Misagh

[1] https://github.com/serac/cas-server-integration-ldaptive




--
You are currently subscribed to cas...@lists.jasig.org as: jasig-cas-dev+...@googlegroups.com
To unsubscribe, change settings or access archives, see http://www.ja-sig.org/wiki/display/JSG/cas-dev

Marvin Addison

unread,
Mar 18, 2013, 11:59:48 AM3/18/13
to cas...@lists.jasig.org
> For the next release, I am wondering if we should consider swapping out
> the current ldap integration with that of ldaptive?

I was waiting until ldaptive 1.0 dropped [1] to respond, and that has
happened so....

+1

This change ties into the new authn API work due to LPPE. Not sure
whether we should do before or after. It will change how password
expiration is communicated up from the auth-handler layer, so my
inclination is integrate now and then continue the authn-api work.
Thoughts?

M

[1] http://www.ldaptive.org/download

Misagh Moayyed

unread,
Mar 28, 2013, 10:30:45 AM3/28/13
to cas...@lists.jasig.org
+1 on early integration. I suspect it would later on reduce duplicate work
that is now ongoing with auth-handler layer. I can certainly assist with
the integration and/or testing the new module.

Team, any objections?

-Misagh



> -----Original Message-----
> From: Marvin Addison [mailto:marvin....@gmail.com]
> Sent: Monday, March 18, 2013 9:00 AM
> To: cas...@lists.jasig.org
> Subject: Re: [cas-dev] CAS, Ldaptive & LPPE
>
> > For the next release, I am wondering if we should consider swapping
> > out the current ldap integration with that of ldaptive?
>
> I was waiting until ldaptive 1.0 dropped [1] to respond, and that has
> happened so....
>
> +1
>
> This change ties into the new authn API work due to LPPE. Not sure
whether we
> should do before or after. It will change how password expiration is
> communicated up from the auth-handler layer, so my inclination is
integrate
> now and then continue the authn-api work.
> Thoughts?
>
> M
>
> [1] http://www.ldaptive.org/download
>
> --
> You are currently subscribed to cas...@lists.jasig.org as:
> mmoa...@unicon.net To unsubscribe, change settings or access archives,

William G. Thompson, Jr.

unread,
Mar 28, 2013, 10:55:42 AM3/28/13
to cas...@lists.jasig.org
+1
> You are currently subscribed to cas...@lists.jasig.org as: wgt...@gmail.com

Scott Battaglia

unread,
Mar 28, 2013, 11:04:14 AM3/28/13
to cas...@lists.jasig.org
+1 also


You are currently subscribed to cas...@lists.jasig.org as: scott.b...@gmail.com

To unsubscribe, change settings or access archives, see http://www.ja-sig.org/wiki/display/JSG/cas-dev

Marvin Addison

unread,
Mar 28, 2013, 2:08:26 PM3/28/13
to cas...@lists.jasig.org
> +1 on early integration. I suspect it would later on reduce duplicate work
> that is now ongoing with auth-handler layer. I can certainly assist with
> the integration and/or testing the new module.

We've got enough agreement to move forward, so I created an issue:

https://issues.jasig.org/browse/CAS-1281

I'll handle merging the existing code into core. I may hand off to
Misagh for LPPE parts if needed. All hands welcome for testing.

M
Reply all
Reply to author
Forward
0 new messages