AtoM 2.5.x and sustainable SSO authentification

62 views
Skip to first unread message

j.kr...@docuteam.ch

unread,
Jul 12, 2019, 7:58:18 AM7/12/19
to AtoM Users
Hi,

It would be very useful for us to be able to mange authentification via shibboleth, oauth2 or another SSO solution in a sustainable manner considering upcoming versions of AtoM. I known that LDAP authorization is integrated in AtoM but would rather avoid it.

In another discussion on this forum, a successful use of CENDARI/sfDariahShibUserPlugin shibboleth plugin was reported for version 2.4.1 after some adaptations of the code (not shared). The code of that plugin was not updated since 2015.

Has anyone successfully tested sfDariahShibUserPlugin or any other SSO solution on AtoM 2.5.x? If yes, do you think that it is sustainable?

Many thanks in advance for your inputs,
Best regards,
Jan Krause

 

Karl Goetz

unread,
Jul 14, 2019, 7:21:27 PM7/14/19
to j.kr...@docuteam.ch, ica-ato...@googlegroups.com
On Fri, 12 Jul 2019 04:58:18 -0700 (PDT)
j.kr...@docuteam.ch wrote:

> Hi,
>
> It would be very useful for us to be able to* mange authentification*
> via shibboleth, oauth2 or another SSO solution in a* sustainable
> manner *considering upcoming versions of AtoM. I known that LDAP
> authorization is integrated in AtoM but would rather avoid it.
>
> In another discussion on this forum
> <https://groups.google.com/forum/?hl=en&fromgroups#!searchin/ica-atom-users/sso%7Csort:date/ica-atom-users/xZeV1VAvJuM/9HG5OrLBBwAJ>,
> a successful use of CENDARI/sfDariahShibUserPlugin
> <https://github.com/CENDARI/sfDariahShibUserPlugin>
> shibboleth plugin was reported for version 2.4.1 after some
> adaptations of the code (not shared). The code of that plugin was not
> updated since 2015.

Hi Jan,

You'll find toms changes - or at least the attributes part - in his fork
on github:

https://github.com/misilot/sfDariahShibUserPlugin/commit/e0b66313364bdafe391fb74c86271707c8a24e75

They are in the pull request against the original project
https://github.com/CENDARI/sfDariahShibUserPlugin/pull/4

Do you believe there are other changes required for 2.4.1 support?


PS.
The original project has a 2.2 branch but it appears virtually
identical to master at this time. If someone was to adopt the project
that and the various suggestions/issues mentioned in
sfDariahShibUserPlugin would be a good place to start in updating the
plugin.

https://github.com/CENDARI/sfDariahShibUserPlugin/compare/dev-2.2


--
Karl Goetz
Technical Services Officer - eResearch, Information Technology Services
University of Tasmania & Tasmanian Partnership for Advanced Computing

Mail: University of Tasmania, Private Bag 69, Hobart, Tasmania 7001
Delivery: TT Flynn Street, Sandy Bay, Tasmania 7005



University of Tasmania Electronic Communications Policy (December, 2014).
This email is confidential, and is for the intended recipient only. Access, disclosure, copying, distribution, or reliance on any of it by anyone outside the intended recipient organisation is prohibited and may be a criminal offence. Please delete if obtained in error and email confirmation to the sender. The views expressed in this email are not necessarily the views of the University of Tasmania, unless clearly intended otherwise.

Reply all
Reply to author
Forward
0 new messages