Re: SSO SPNEGO GSS API CheckSum Failed Error

2024-02-23 Thread Tom Delaney
Please don't respond to this email. I was able to figure out the issue. The server hosting devexample.domain.com was using a canonicalized hostname. This was throwing tomcat off when reading over the token and keytab file. I only wish there was a better way for this error to pick up on that. On Fr

Re: SSO Token not found with RewriteRules

2023-01-17 Thread Jerry Malcolm
On 1/17/2023 12:30 PM, Jerry Malcolm wrote: On 1/17/2023 3:43 AM, Mark Thomas wrote: On 16/01/2023 23:07, Jerry Malcolm wrote: Well, after downloading and installing the Tomcat source in my Eclipse environment and tracking through a bunch of breakpoints, I figured out what was happening. Si

Re: SSO Token not found with RewriteRules

2023-01-17 Thread Jerry Malcolm
On 1/17/2023 3:43 AM, Mark Thomas wrote: On 16/01/2023 23:07, Jerry Malcolm wrote: Well, after downloading and installing the Tomcat source in my Eclipse environment and tracking through a bunch of breakpoints, I figured out what was happening. SingleSignOn.invoke() was querying for the list

Re: SSO Token not found with RewriteRules

2023-01-17 Thread Mark Thomas
On 17/01/2023 09:43, Mark Thomas wrote: On 16/01/2023 23:07, Jerry Malcolm wrote: Well, after downloading and installing the Tomcat source in my Eclipse environment and tracking through a bunch of breakpoints, I figured out what was happening.   SingleSignOn.invoke() was querying for the list

Re: SSO Token not found with RewriteRules

2023-01-17 Thread Mark Thomas
On 16/01/2023 23:07, Jerry Malcolm wrote: Well, after downloading and installing the Tomcat source in my Eclipse environment and tracking through a bunch of breakpoints, I figured out what was happening.   SingleSignOn.invoke() was querying for the list of cookies in the request (that were inde

Re: SSO Token not found with RewriteRules

2023-01-16 Thread Jerry Malcolm
Well, after downloading and installing the Tomcat source in my Eclipse environment and tracking through a bunch of breakpoints, I figured out what was happening.   SingleSignOn.invoke() was querying for the list of cookies in the request (that were indeed present in the request), but was return

RE: SSO fails on Tomcat 9

2019-09-25 Thread Heidi Leerink - Duverger
Onderwerp: Re: SSO fails on Tomcat 9 On 10/09/2019 16:47, André Warnier (tomcat) wrote: > On 10.09.2019 15:38, Mark Thomas wrote: >> On 06/09/2019 13:20, Heidi Leerink - Duverger wrote: >>> Hello Mark, >>> >>> That helps somewhat, my browser now shows the login

Re: SSO fails on Tomcat 9

2019-09-10 Thread Mark Thomas
On 10/09/2019 16:47, André Warnier (tomcat) wrote: > On 10.09.2019 15:38, Mark Thomas wrote: >> On 06/09/2019 13:20, Heidi Leerink - Duverger wrote: >>> Hello Mark, >>> >>> That helps somewhat, my browser now shows the login page for our >>> application, BUT I do not get my username in HTTP variabl

Re: SSO fails on Tomcat 9

2019-09-10 Thread tomcat
On 10.09.2019 15:38, Mark Thomas wrote: On 06/09/2019 13:20, Heidi Leerink - Duverger wrote: Hello Mark, That helps somewhat, my browser now shows the login page for our application, BUT I do not get my username in HTTP variable REMOTE_USER but the principal keytab related name. So instead o

Re: SSO fails on Tomcat 9

2019-09-10 Thread Mark Thomas
On 06/09/2019 13:20, Heidi Leerink - Duverger wrote: > Hello Mark, > > That helps somewhat, my browser now shows the login page for our application, > BUT I do not get my username in HTTP variable REMOTE_USER but the principal > keytab related name. > > So instead of hduverge I get HTTP/nlsl-de

RE: SSO fails on Tomcat 9

2019-09-06 Thread Heidi Leerink - Duverger
. Thank you for your cooperation. -Original Message- From: André Warnier (tomcat) [mailto:a...@ice-sa.com] Sent: vrijdag 6 september 2019 12:15 To: users@tomcat.apache.org Subject: Re: SSO fails on Tomcat 9 Hi Heidi. We have kind of a conundrum here : - Mark (who is one of the main tomcat

RE: SSO fails on Tomcat 9

2019-09-06 Thread Heidi Leerink - Duverger
note that internet communications are not secure and e-mails are susceptible to change. Thank you for your cooperation. -Original Message- From: Mark Thomas [mailto:ma...@apache.org] Sent: vrijdag 6 september 2019 11:55 To: users@tomcat.apache.org Subject: Re: SSO fails on Tomcat 9 On

Re: SSO fails on Tomcat 9

2019-09-06 Thread tomcat
unlawful. Please note that internet communications are not secure and e-mails are susceptible to change. Thank you for your cooperation. -Original Message- From: Mark Thomas [mailto:ma...@apache.org] Sent: woensdag 4 september 2019 11:09 To: users@tomcat.apache.org Subject: Re: SSO fai

Re: SSO fails on Tomcat 9

2019-09-06 Thread Mark Thomas
. Do not disclose the contents of this document to > any other persons. Violation of this notice may be unlawful. Please note that > internet communications are not secure and e-mails are susceptible to change. > Thank you for your cooperation. > > -Original Message- > Fr

Re: SSO fails on Tomcat 9

2019-09-04 Thread Mark Thomas
Heidi, I have just completed the tests and SPNEGO works as expected with both Tomcat 8.5.x and 9.0.x. The test environment was as per: http://tomcat.apache.org/tomcat-9.0-doc/windows-auth-howto.html with the following changes: - Updated the Domain Controller and Tomcat instance with all the late

RE: SSO fails on Tomcat 9

2019-09-03 Thread Heidi Leerink - Duverger
cooperation. -Original Message- From: Mark Thomas [mailto:ma...@apache.org] Sent: dinsdag 3 september 2019 20:31 To: users@tomcat.apache.org Subject: Re: SSO fails on Tomcat 9 Heidi, I have the set of test VMs I used when first implementing this feature. They are the ones I used when I wrote

Re: SSO fails on Tomcat 9

2019-09-03 Thread Mark Thomas
the contents of this document to > any other persons. Violation of this notice may be unlawful. Please note that > internet communications are not secure and e-mails are susceptible to change. > Thank you for your cooperation. > > -Original Message- > From: André Warnier

RE: SSO fails on Tomcat 9

2019-09-03 Thread Heidi Leerink - Duverger
Violation of this notice may be unlawful. Please note that internet communications are not secure and e-mails are susceptible to change. Thank you for your cooperation. -Original Message- From: André Warnier (tomcat) [mailto:a...@ice-sa.com] Sent: dinsdag 3 september 2019 14:27 To: users@

Re: SSO fails on Tomcat 9

2019-09-03 Thread tomcat
of this notice may be unlawful. Please note that internet communications are not secure and e-mails are susceptible to change. Thank you for your cooperation. -Original Message- From: André Warnier (tomcat) [mailto:a...@ice-sa.com] Sent: dinsdag 3 september 2019 10:39 To: users@tomcat.apache.or

RE: SSO fails on Tomcat 9

2019-09-03 Thread Heidi Leerink - Duverger
september 2019 10:39 To: users@tomcat.apache.org Subject: Re: SSO fails on Tomcat 9 Hello Heidi. Thank you for the complete information provided in your post below. I do not have any experience with the Tomcat SPNEGO Valve per se, but quite a bit of experience with Windows Integrated Authen

Re: SSO fails on Tomcat 9

2019-09-03 Thread tomcat
Hello Heidi. Thank you for the complete information provided in your post below. I do not have any experience with the Tomcat SPNEGO Valve per se, but quite a bit of experience with Windows Integrated Authentication. To me, the symptoms that you describe below, do not really look like a problem

Re: sso integration with tomcat

2014-07-07 Thread Mark Thomas
On 07/07/2014 12:02, Randeep wrote: > Hi all, > > We are trying to implement a single sign on tool with our website. > > Our architecture is as follows. > > httpd 2.2 (front end) + mod_jk + apache_tomcat 7.0.53 (back end) > we have 5 web applications in the webapps > we are using centos 5.4 > >

Re: SSO

2014-03-23 Thread Christopher Schultz
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 Brosh, On 3/23/14, 3:37 AM, Brosh, Yossi wrote: > I am trying to install SSO on Linux machine with Tomcat in order > to working with Jenkins without the needed to login, any idea ? Lots of ideas. What have you tried so far? - -chris -BEGIN PGP

RE: SSO

2014-03-23 Thread Martin Gainty
When you say Linux I assume you are implementing "Red Hat Enterprise Linux SSO" https://access.redhat.com/site/documentation/en-US/Red_Hat_Enterprise_Linux/5/html/Deployment_Guide/sso-ov.html Martin __ Please do not alter or disrupt this email trans

Re: SSO

2014-03-23 Thread André Warnier
Brosh, Yossi wrote: Hi to all , I am trying to install SSO on Linux machine with Tomcat in order to working with Jenkins without the needed to login, any idea ? http://www.catb.org/esr/faqs/smart-questions.html ? - To unsu

Re: SSO session replication within TC 5.5.23 cluster

2007-08-07 Thread Filip Hanik - Dev Lists
August 7, 2007 9:40:04 PM Subject: Re: SSO session replication within TC 5.5.23 cluster I'm not sure the replicated SSO cookie implementation ever was completed, I think it was abandoned before it reached a functional stage Filip ROOKIE wrote: Hi, I have a problem with tomcat cluster

Re: SSO session replication within TC 5.5.23 cluster

2007-08-07 Thread ROOKIE
sessions directly to the correct cluster member. Thanks, Vinod - Original Message From: Filip Hanik - Dev Lists <[EMAIL PROTECTED]> To: Tomcat Users List Sent: Tuesday, August 7, 2007 9:40:04 PM Subject: Re: SSO session replication within TC 5.5.23 cluster I'm not sure the rep

Re: SSO session replication within TC 5.5.23 cluster

2007-08-07 Thread Filip Hanik - Dev Lists
okie. Is there an better way to achieve this in my code base ? Thanks In Advance, Vinod - Original Message From: Filip Hanik - Dev Lists <[EMAIL PROTECTED]> To: Tomcat Users List Sent: Wednesday, May 30, 2007 2:49:59 PM Subject: Re: SSO session replication within TC 5.5.23

Re: SSO session replication within TC 5.5.23 cluster

2007-08-07 Thread ROOKIE
ECTED]> To: Tomcat Users List Sent: Wednesday, May 30, 2007 2:49:59 PM Subject: Re: SSO session replication within TC 5.5.23 cluster It was contributed but never completed, so it is not working properly Filip ROOKIE wrote: > Hi, > Can someone please clarify if tomcat 5.5 supports repli

Re: SSO session replication within TC 5.5.23 cluster

2007-05-30 Thread Filip Hanik - Dev Lists
It was contributed but never completed, so it is not working properly Filip ROOKIE wrote: Hi, Can someone please clarify if tomcat 5.5 supports replication of single-sign-on sessions across cluster members, if so how to configure it ? Thanks, Vinod - Original Message From: ROOKIE <[

Re: SSO session replication within TC 5.5.23 cluster

2007-05-30 Thread ROOKIE
Hi, Can someone please clarify if tomcat 5.5 supports replication of single-sign-on sessions across cluster members, if so how to configure it ? Thanks, Vinod - Original Message From: ROOKIE <[EMAIL PROTECTED]> To: users@tomcat.apache.org Sent: Tuesday, May 29, 2007 5:20:03 PM Subject:

Re: SSO ID in the first request

2007-03-15 Thread Gregor Schneider
Hi Fredrik, > > HttpSession session = .; > session.setAttribute(String nameOfYourObject, Object yourObject); > Object yourObject = session.getAttribute(String nameOfYourObject); Surely, this cannot be correct? It would take me some effort to try sharing attributes between webapps, so I can'

Re: SSO ID in the first request

2007-03-14 Thread Fredrik Tolf
On Tue, 2007-03-13 at 19:34 +0100, Gregor Schneider wrote: > I guess you're talking about JSSOSessionID-Cookie, right? Indeed. > I believe the whole design is not too smart: > > Since all webapps are sharing the same session, I'd store the needed > values as session-attributes (too lazy to look

Re: SSO ID in the first request

2007-03-13 Thread Gregor Schneider
I guess you're talking about JSSOSessionID-Cookie, right? I believe the whole design is not too smart: Since all webapps are sharing the same session, I'd store the needed values as session-attributes (too lazy to look it up right now, but should work like HttpSession session = .; session.s

Re: SSO and session security

2006-11-10 Thread Mark Thomas
Mikolaj Rydzewski wrote: > Would it be a problem if I enable single sign-on for the server? Would > my apps overwrite each other's session form-beans? The web application sessions will remain separate. Mark - To start a new topi

Re: SSO + CLustering

2006-08-29 Thread Ben K.
One people in IRC tell me about SSO + Clustering, do you know if this is possible? Sorry I don't have a firsthand experience but I wonder if clustering and SSO are two orthogonal issues... except for scalability ... I found a somewhat rlevant discussion. http://tp.its.yale.edu/pipermail/cas/

RE: SSO - 2 applications in 2 Tomcats - Realm

2006-08-29 Thread Richard Mixon
Concerning the questions on Realm ... I think if you re-read the section http://tomcat.apache.org/tomcat-5.5-doc/realm-howto.html#JDBCRealm you will find the answer. The names of the tables are not important, they can be specified using the XML attributes userTable and userRoleTable on the Real e

RE: SSO question

2005-11-11 Thread Klotz Jr, Dennis
>-Original Message- >From: Peter Crowther [mailto:[EMAIL PROTECTED] >Sent: Friday, November 11, 2005 4:20 AM >To: Tomcat Users List >Subject: RE: SSO question > >> From: Klotz Jr, Dennis [mailto:[EMAIL PROTECTED] >> Is it possible using LDAP, whether it

RE: SSO question

2005-11-11 Thread Peter Crowther
> From: Klotz Jr, Dennis [mailto:[EMAIL PROTECTED] > Is it possible using LDAP, whether it is using custom JAAS code or a > third party product such as Vintela's VSJ > (http://www.vintela.com/products/vsj/), to do the following: > > "... prevent, control or limit the simultaneous active usage >

Re: SSO with JASS

2005-11-09 Thread Damon Rand
Hi Abhilash, It is very embryonic but I have implemented the beginnings of a container portable SSO solution including a Tomcat valve.. The source is here.. http://ssso.codehaus.org/ I need to do some more work on the docs though. :-) Regards, Damon. - Original Message - From: "Ab