Gmail Calendar Documents Reader Web more »
Recently Visited Groups | Help | Sign in
Google Groups Home
Redirection Problem After Authentication
There are currently too many topics in this group that display first. To make this topic appear first, remove this option from another topic.
There was an error processing your request. Please try again.
flag
  6 messages - Collapse all  -  Translate all to Translated (View all originals)
The group you are posting to is a Usenet group. Messages posted to this group will make your email address visible to anyone on the Internet.
Your reply message has not been sent.
Your post was successful
 
From:
To:
Cc:
Followup To:
Add Cc | Add Followup-to | Edit Subject
Subject:
Validation:
For verification purposes please type the characters you see in the picture below or the numbers you hear by clicking the accessibility icon. Listen and type the numbers you hear
 
elyas  
View profile  
 More options Sep 3 2008, 6:05 pm
From: elyas <elyas.moha...@gmail.com>
Date: Wed, 3 Sep 2008 01:05:09 -0700 (PDT)
Local: Wed, Sep 3 2008 6:05 pm
Subject: Redirection Problem After Authentication
Dear All,

I have done the basic esoe setup on windows platform with apache ds.

when I go to the URL -
http://blr20357:8080/esoemanager/?

I get redirected to a page where username and password is prompted

When i key in the wrong username and password I get an error. - Fine

But,When i key in the correct username and password the page stays
and it doesnt get redirected to the earlier URL (ie, http://blr20357:8080/esoemanager/?
)

Can anybody please help me out to find out what could be the problem?

Regards,
Elyas


    Reply to author    Forward  
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Bradley Beddoes  
View profile  
 More options Sep 4 2008, 7:17 am
From: Bradley Beddoes <bedd...@intient.com>
Date: Thu, 04 Sep 2008 07:17:31 +1000
Local: Thurs, Sep 4 2008 7:17 am
Subject: Re: [esoe-users] Redirection Problem After Authentication

Hi,
Can you please provide output from esoe.log and esoe-authn.log bit hard
to tell what is going on without this.

regards,
Bradley
--
Bradley Beddoes
Lead Software Architect
Intient Pty Ltd

http://www.intient.com

  beddoes.vcf
< 1K Download

    Reply to author    Forward  
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
elyas  
View profile  
 More options Sep 4 2008, 5:24 pm
From: elyas <elyas.moha...@gmail.com>
Date: Thu, 4 Sep 2008 00:24:24 -0700 (PDT)
Local: Thurs, Sep 4 2008 5:24 pm
Subject: Re: Redirection Problem After Authentication
Dear Bradley,

Please find the logs attached.

esoe-auth.log
-------------------

2008-09-04 12:44:05,456 INFO  esoe.authn - Successfully bound to LDAP
server as cn=John Fryer,ou=people,o=sevenSeas
2008-09-04 12:44:05,456 INFO  esoe.authn - Successfully authenticated
principal jfryer to underlying authentication mechanism identified by
external ESOE ID of: 6f0b2ac039b6419b497e0833562575d67539c0ac-
e5f0b064af161246454e6953f5b19146-1220512445456 using username/password
handler
2008-09-04 12:44:05,847 INFO  esoe.authn - Internal SSO identifier
established for principal jfryer identified by internal ID
of_411c59c06744e246109f815214f20e26d04a7591-
ed4faf6fcd1cd97af1bea0a88a8c8ad8
2008-09-04 12:44:05,847 INFO  esoe.authn - Result of establishing
session with sessions processor was SessionCreated

esoe.log
-------------

2008-09-04 12:42:23,675 DEBUG
com.qut.middleware.esoe.crypto.impl.KeyStoreResolverImpl - Going to
load keystore from C:\esoedb2\opt\esoe\core\config\esoeKeystore.ks,
loading key alias 1283ce0b58199ee9
2008-09-04 12:42:23,675 INFO
com.qut.middleware.esoe.crypto.impl.KeyStoreResolverImpl - Created
KeyStoreResolverImpl successfully with params keyStoreFile=C:
\esoedb2\opt\esoe\core\config\esoeKeystore.ks,
esoeKeyAlias=1283ce0b58199ee9
2008-09-04 12:42:23,675 DEBUG
com.qut.middleware.esoe.crypto.impl.KeyStoreResolverImpl - Going to
load keystore from C:\esoedb2\opt\esoe\core\config\esoeKeystore.ks,
loading key alias 40ea6353c1c792cf
2008-09-04 12:42:23,675 INFO
com.qut.middleware.esoe.crypto.impl.KeyStoreResolverImpl - Created
KeyStoreResolverImpl successfully with params keyStoreFile=C:
\esoedb2\opt\esoe\core\config\esoeKeystore.ks,
esoeKeyAlias=40ea6353c1c792cf
2008-09-04 12:42:23,675 DEBUG
com.qut.middleware.esoe.crypto.impl.KeyStoreResolverImpl - Keystore C:
\esoedb2\opt\esoe\core\config\esoeKeystore.ks, key alias
40ea6353c1c792cf has no private key.
2008-09-04 12:42:24,097 INFO
com.qut.middleware.esoe.metadata.impl.MetadataImpl - Created
MetadataImpl successfully with params esoeIdentifier - http://blr20357:8080.
2008-09-04 12:42:24,175 INFO
com.qut.middleware.esoe.sessions.identity.pipeline.impl.LDAPHandlerImpl
- Created LDAPHandlerImpl successfully with params of
principalAttribute=uid, searchBase=
2008-09-04 12:42:24,175 INFO
com.qut.middleware.esoe.sessions.identity.impl.IdentityResolverImpl -
Created AttributeAuthorityProcessorImpl successfully with number of
handlers=1
2008-09-04 12:42:24,409 INFO
com.qut.middleware.esoe.metadata.impl.MetadataUpdateMonitor - Created
MetadataUpdateMonitor with params: Interval - 120
2008-09-04 12:42:24,409 INFO
com.qut.middleware.esoe.sessions.cache.impl.SessionCacheImpl - Created
SessionCacheImpl successfully.
2008-09-04 12:42:24,425 INFO
com.qut.middleware.esoe.sessions.impl.CreateImpl - Created CreateImpl
successfully.
2008-09-04 12:42:24,425 INFO
com.qut.middleware.esoe.sessions.impl.QueryImpl - Created QueryImpl
successfully.
2008-09-04 12:42:24,425 INFO
com.qut.middleware.esoe.sessions.impl.TerminateImpl - Created
TerminateImpl successfully.
2008-09-04 12:42:24,425 INFO
com.qut.middleware.esoe.sessions.impl.UpdateImpl - Created UpdateImpl
successfully.
2008-09-04 12:42:24,425 INFO
com.qut.middleware.esoe.sessions.impl.SessionsProcessorImpl - Created
SessionsProcessorImpl successfully.
2008-09-04 12:42:24,441 INFO
com.qut.middleware.esoe.sessions.impl.SessionsMonitor -
SessionsMonitor Thread started with params: interval: 3,600 seconds;
timeout: 86,400 seconds.
2008-09-04 12:42:24,800 INFO
com.qut.middleware.esoe.pdp.cache.impl.PolicyCacheProcessorImpl -
Created PolicyCacheProcessor successfully. Using polling interval of
120 seconds.
2008-09-04 12:42:24,800 DEBUG
com.qut.middleware.esoe.pdp.cache.impl.PolicyCacheProcessorImpl -
Rebuilding Policy Cache (fullRebuild = true).
2008-09-04 12:42:24,800 DEBUG
com.qut.middleware.esoe.pdp.cache.impl.PolicyCacheProcessorImpl -
Query retrieved 2 results.
2008-09-04 12:42:24,816 DEBUG
com.qut.middleware.esoe.pdp.cache.impl.PolicyCacheProcessorImpl -
Added policy manager-0 to List of Policies for http://blr20357:8080/esoemanager
2008-09-04 12:42:24,816 DEBUG
com.qut.middleware.esoe.pdp.cache.impl.PolicyCacheProcessorImpl -
Updating http://blr20357:8080/esoemanager (1 Policies).
2008-09-04 12:42:24,816 DEBUG
com.qut.middleware.esoe.pdp.cache.impl.PolicyCacheProcessorImpl -
Added policy spep-0 to List of Policies for http://blr20357:8080/esoemanager
2008-09-04 12:42:24,816 DEBUG
com.qut.middleware.esoe.pdp.cache.impl.PolicyCacheProcessorImpl -
Updating http://blr20357:8080/esoemanager (2 Policies).
2008-09-04 12:42:24,816 INFO
com.qut.middleware.esoe.pdp.cache.impl.PolicyCacheProcessorImpl -
Updated Policies for http://blr20357:8080/esoemanager. (2 Policies
total).
2008-09-04 12:42:24,816 INFO
com.qut.middleware.esoe.pdp.cache.impl.PolicyCacheProcessorImpl -
Policy cache successfully rebuilt. Cache size is 1.
2008-09-04 12:42:25,097 INFO
com.qut.middleware.esoe.pdp.impl.AuthorizationProcessorImpl - Created
AuthorizationProcessor successfully. Using default policy mode of DENY
2008-09-04 12:42:25,675 INFO
com.qut.middleware.esoe.pdp.cache.impl.CacheUpdateFailureMonitor -
CacheUpdate Failure monitor successfully started with params
maxFailureAge: 3,600 seconds; retryInterval: 20 seconds.
2008-09-04 12:42:25,691 INFO
com.qut.middleware.esoe.spep.impl.SPEPRegistrationCacheImpl - Created
SPEPRegistrationCacheImpl successfully.
2008-09-04 12:42:25,925 INFO
com.qut.middleware.esoe.spep.impl.StartupImpl - Created StartupImpl
successfully
2008-09-04 12:42:26,144 INFO
com.qut.middleware.esoe.spep.impl.SPEPProcessorImpl - Created
SPEPProcessorImpl successfully
2008-09-04 12:42:26,159 DEBUG
com.qut.middleware.esoe.authn.pipeline.authenticator.LdapBasicAuthenticator
- Creating bind as administrator version of LdapBasicHandler
2008-09-04 12:42:26,159 INFO
com.qut.middleware.esoe.authn.pipeline.authenticator.LdapBasicAuthenticator
- Created LdapBasicAuthenticator successfully with params of
ldapServer: blr20357:10389 ldapServerPort: 10389 baseDN: o=sevenSeas
identifier: uid= recursive: true disableSSL: true
2008-09-04 12:42:26,159 INFO
com.qut.middleware.esoe.authn.pipeline.handlers.UsernamePasswordHandler
- Created UsernamePasswordHandler v-1.0 successfully with params of
requireCredentialsURL: http://blr20357:8080/web/login.htm
failedAuthnNameValue: rc=authnfail redirectTarget:
http://blr20357:8080/web/loginsuccess.htm invalidURL:
http://blr20357:8080/web/failure.htm
2008-09-04 12:42:26,847 INFO
com.qut.middleware.esoe.sso.impl.LogoutAuthorityProcessor -
Successfully created LogoutAuthorityProcessor.
2008-09-04 12:42:27,175 INFO
com.qut.middleware.esoe.sso.impl.FailedLogoutMonitor - Logout Failure
monitor successfully started. Using failure expiry of 600 seconds.
2008-09-04 12:42:27,691 INFO
com.qut.middleware.esoe.aa.impl.AttributeAuthorityProcessorImpl -
Created AttributeAuthorityProcessorImpl successfully with param of
allowedTimeSkew=60
2008-09-04 12:42:27,706 INFO
com.qut.middleware.esoe.sso.servlet.SSOLogoutServlet - Created
SSOLogoutServlet successfully with params sessionTokenName:
esoeSession - dynamicLogoutURL: http://blr20357:8080/web/logout.htm
2008-09-04 12:42:27,706 INFO
com.qut.middleware.esoe.authn.servlet.AuthnServlet - Created
AuthnServlet successfully
2008-09-04 12:42:27,706 INFO
com.qut.middleware.esoe.sso.servlet.SSOAAServlet - Created
SSOAAServlet successfully with params sessionTokenName: esoeSession
authnRedirectURL: http://blr20357:8080/signinauthnDynamicURLParam:
redirectURL ssoURL: http://blr20357:8080/sso
2008-09-04 12:42:28,487 DEBUG
com.qut.middleware.esoe.metadata.impl.MetadataUpdateMonitor -
Successfully read 14342 chars of metadata.
2008-09-04 12:42:28,909 DEBUG
com.qut.middleware.esoe.metadata.impl.MetadataUpdateMonitor - Metadata
hash value is ae406183c623b15ae81e2e36dc7ea51ddb9c46d0 .. comparing to
current revision null
2008-09-04 12:42:28,909 DEBUG
com.qut.middleware.esoe.metadata.impl.MetadataUpdateMonitor -
Unmarshalling new metadata.
2008-09-04 12:42:28,941 INFO
com.qut.middleware.esoe.metadata.impl.MetadataUpdateMonitor -
Rebuilding metadata cache from new revision
ae406183c623b15ae81e2e36dc7ea51ddb9c46d0.
2008-09-04 12:42:29,003 DEBUG
com.qut.middleware.esoe.pdp.cache.impl.PolicyCacheProcessorImpl -
Generating clearCacheRequest for http://blr20357:8080/esoemanager. 2
Policies retrieved.
2008-09-04 12:42:29,066 INFO
com.qut.middleware.esoe.pdp.cache.impl.PolicyCacheProcessorImpl -
Sending AuthzClearCacheRequest to http://blr20357:8080/spep/services/spep/authzCacheClear
2008-09-04 12:42:29,394 DEBUG
com.qut.middleware.esoe.ws.impl.WSProcessorImpl - Entering
spepStartup(OMElement spepStartup)
2008-09-04 12:42:29,394 DEBUG
com.qut.middleware.esoe.ws.impl.WSProcessorImpl - Entering
readRequest(OMElement requestDocument)
2008-09-04 12:42:29,394 INFO
com.qut.middleware.esoe.spep.impl.StartupImpl - Received SPEP Startup
request from null.
2008-09-04 12:42:29,409 DEBUG
com.qut.middleware.esoe.spep.impl.StartupImpl - Unmarshalled startup
request ID
_f066bcc7f3709f2c4af219f7e812d2466902eea4-31c65baaea80d09f13d8db5a3530f218
2008-09-04 12:42:29,409 DEBUG
com.qut.middleware.esoe.spep.impl.StartupImpl - Attempting to register
SPEP http://blr20357:8080/esoemanager from initialization request
_f066bcc7f3709f2c4af219f7e812d2466902eea4-31c65baaea80d09f13d8db5a3530f218
2008-09-04 12:42:29,409 DEBUG
com.qut.middleware.esoe.spep.impl.SPEPRegistrationCacheImpl - Going to
register SPEP. Request ID is
_f066bcc7f3709f2c4af219f7e812d2466902eea4-31c65baaea80d09f13d8db5a3530f218
2008-09-04 12:42:29,409 DEBUG
com.qut.middleware.esoe.spep.impl.SPEPRegistrationCacheImpl - Checking
that database contains a record of SPEP http://blr20357:8080/esoemanager
2008-09-04 12:42:29,409 DEBUG
...

read more »


    Reply to author    Forward  
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Bradley Beddoes  
View profile  
 More options Sep 5 2008, 7:30 am
From: Bradley Beddoes <bedd...@intient.com>
Date: Fri, 05 Sep 2008 07:30:31 +1000
Local: Fri, Sep 5 2008 7:30 am
Subject: Re: [esoe-users] Re: Redirection Problem After Authentication

Hi,
So the key for me is this:

com.qut.middleware.esoe.authn.servlet.AuthnServlet - Successfully
completed principal authentication attempt
2008-09-04 12:44:05,847 DEBUG
com.qut.middleware.esoe.sso.servlet.SSOAAServlet - SSOAAServlet got
GET request
2008-09-04 12:44:05,847 DEBUG
com.qut.middleware.esoe.sso.servlet.SSOAAServlet - Received GET
request from previous session. Processing principal session details ..
2008-09-04 12:44:05,847 DEBUG
com.qut.middleware.esoe.sso.servlet.SSOAAServlet - Attempting to
process all cookies presented in the request
2008-09-04 12:44:05,847 DEBUG
com.qut.middleware.esoe.sso.servlet.SSOAAServlet - Cookie name:
JSESSIONID Value:1DE15A5BCC9E4D5576F8A142B551BBEE
2008-09-04 12:44:05,847 INFO
com.qut.middleware.esoe.sso.impl.AuthenticationAuthorityProcessorBase
- Session not established, forcing authentication operation on
principal
2008-09-04 12:44:05,847 DEBUG
com.qut.middleware.esoe.sso.servlet.SSOAAServlet - Authentication
authority processor indicated result of ForceAuthn
2008-09-04 12:44:05,847 DEBUG
com.qut.middleware.esoe.sso.servlet.SSOAAServlet - Generating Force
Authn response to principal user-agent

It seems like you do authenticate correctly but that the esoeSession
cookie is not being set correctly. Not sure why that may be but I would
start by checking that domain settings in esoe.config are correct.

Bradley

...

read more »

  beddoes.vcf
< 1K Download

    Reply to author    Forward  
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
elyas  
View profile  
 More options Sep 5 2008, 5:02 pm
From: elyas <elyas.moha...@gmail.com>
Date: Fri, 5 Sep 2008 00:02:12 -0700 (PDT)
Local: Fri, Sep 5 2008 5:02 pm
Subject: Re: Redirection Problem After Authentication
Hi Bradley,

Here is my esoe.config

#
#
# Enterprise Sign On Engine (ESOE) global configuration file
#
# Changing values in this file WILL effect the way the ESOE operates
in production, please change with
# care and in consultation with configuration documentation.
#
# VALUES IN THIS FILE WERE AUTOMATICALLY POPULATED BY ESOESTARTUP.
#
# Author: Bradley Beddoes
# Date: 22/11/2006
#

########################################################################### ################################
#
# Deployment specific configuration
####

## Database Server 1 Connection
databaseDriver-1=com.mysql.jdbc.Driver
databaseURL-1=jdbc:mysql://blr20357/esoedb2?useUnicode=true
databaseUsername-1=root
databasePassword-1=admin
databaseRemoveAbandoned-1=true
databaseRemoveAbandonedTimeout-1=300
databaseLogAbandoned-1=true
databaseMaxIdle-1=5
databaseMaxActive-1=25

## LDAP Server 1 Connection
ldapURL-1=ldap://blr20357:10389
ldapServer-1=blr20357:10389
ldapServerPort-1=10389
baseDN-1=o=sevenSeas
identifier-1=uid
recursive-1=true
disableSSL-1=true
adminUser-1=uid=admin,ou=system
adminPassword-1=secret

## Keystore 1
keystorePath-1=${esoe.data}/config/esoeKeystore.ks
keystorePassword-1=e2c235cfdc4c37b03494
keyAlias-1=1283ce0b58199ee9
keyPassword-1=b6c9c510fcd3b1ac22c3
keyAlias-2=40ea6353c1c792cf

## Active Directory SSO
# Identifier name for browsers integrated into Active Directory
#activeDirectoryBrowserId=
# Identifier for server principal in Active Directory
#serverPrincipal=
# Keytab for communication with Active Directory
#keyTab=

## ESOE trusted identifier for this deployment
esoeIdentifier=http://blr20357:8080

## Trusted URL to recieve metadata files from
metadataURL=http://blr20357:8080/esoemanager/metadata/retrieve.htm

# Domain in which esoe cookie should be available - should NEVER be
set institution wide
sessionDomain=blr20357

# Domain in which discovery cookie should be available - MUST be set
institution wide
commonDomain=colt.net

## URL to redirect unauthenticated principal to
authenticationURL=http://blr20357:8080/signin

## URL for SAML SSO endpoint supported by this instance
ssoURL=http://blr20357:8080/sso

## Authentication Identifiers
# URL to redirect authenticated principal to logout
logoutURL=http://blr20357:8080/web/logout.htm

# URL to redirect principal to for manual authentication processes
usernamePasswordURL=http://blr20357:8080/web/login.htm

# Value to append to usernamePasswordURL when authentication fails
authenticationFailedNameValue=rc=authnfail

# URLS to redirect client to when authn has completed successfully and
there is no dynamic URL
successURL=http://blr20357:8080/web/loginsuccess.htm

# URLS to redirect client to when logout has completed successfully
and there is no dynamic URL
logoutSuccessURL=http://blr20357:8080/web/logoutsuccess.htm

# URL to redirect client to for a critical failure
criticalfailureURL=http://blr20357:8080/web/failure.htm

##
# Identifier Attribute Mappings
identifier.unspecified.value=unmapped
identifier.emailAddress.value=mail
identifier.X509SubjectName.value=unmapped
identifier.windowsDomainQualName.value=umapped
identifier.kerberos.value=unmapped
identifier.persistent.value=unmapped

########################################################################### ################################
#
# You should not need to edit anything below this line, advanced
changes only
####

# Should ESOE try to process non signed AuthnRequests
acceptUnsignedAuthnRequests=false

# Identifier name for esoe session identifier
sessionTokenName=esoeSession

# Identifier name for site wide identifier indicating ESOE knows about
this users session
commonDomainTokenName=_saml_idp

## Authorization Identifiers

# Seconds between attempting to send cache updates to SPEPs
cacheupdatefailuremonitor.retryInterval=20

# Seconds that an authz cache update failure can remain in the
repository before being removed
cacheupdatefailuremonitor.maxFailureAge=3600

# Time in seconds to attempt to refresh updated policies from data
repository
authorizationPollInterval=120

# Time between retrying to send logout failures in seconds
sso.failedlogoutmonitor.retryInterval=60

# Seconds that a Logout failure can remain in repository in seconds
sso.failedlogoutmonitor.maxFailureAge=600

## SAML Identifiers
# Time in seconds to update the authentication network
networkUpdateInterval=120

# Time in seconds that is acceptable for networked SPEP instances
being out of time sync for
allowedSPEPSkew=60

# Time in seconds that a user authentication interaction is considered
active
allowedActiveAuthSkew=120

# Time in seconds that a session is to remain active on SPEP
sessionLength=86400

# Time that must be remaining in seconds for a principal to be granted
a new session on a remote SPEP
sessionRemainingLength=1800

# Time in seconds between session cache cleanup
sessionCacheClean=3600

# Time in seconds between identifier cache cleanup
identifierCacheClean=3600

# Time in seconds that we cache identifiers for to prevent replay
attacks
identifierExpiryInterval=36000

# Name of parameter which will hold Base64 encoded value which the
authentication system MUST respond to on successful authn
authenticationDynamicParameter=redirectURL

# Identifier name for disabling automated single sign on
disableAutomatedAuthnTokenName=esoeNoAuto

# Default authorization action
authorizationDefaultMode=DENY

##
# Identifier Keys
identifier.unspecified=urn:oasis:names:tc:SAML:1.1:nameid-
format:unspecified
identifier.emailAddress=urn:oasis:names:tc:SAML:1.1:nameid-
format:emailAddress
identifier.X509SubjectName=urn:oasis:names:tc:SAML:1.1:nameid-
format:X509SubjectName
identifier.windowsDomainQualName=urn:oasis:names:tc:SAML:1.1:nameid-
format:WindowsDomainQualifiedName
identifier.kerberos=urn:oasis:names:tc:SAML:2.0:nameid-format:kerberos
identifier.persistent=urn:oasis:names:tc:SAML:2.0:nameid-
format:persistent

## Security Level
# Security Level Identifier
securityLevelIdentifer=SecurityLevel

# Security Level 1 Identifier
securityLevel1=Level 1

# Security Level 2 Identifier
securityLevel2=Level 2

# Security Level 3 Identifier
securityLevel3=Level 3

# Security Level 4 Identifier
securityLevel4=Level 4

### Supported Schemas
saml.protocol=saml-schema-protocol-2.0.xsd
saml.assertion=saml-schema-assertion-2.0.xsd
saml.metadata=saml-schema-metadata-2.0.xsd
lxacml=lxacmlSchema.xsd
lxacml.protocol=lxacmlSAMLProtocolSchema.xsd
lxacml.assertion=lxacmlSAMLAssertionSchema.xsd
lxacml.context=lxacmlContextSchema.xsd
lxacml.pdp=lxacmlPDPSchema.xsd
esoe.protocol=ESOEProtocolSchema.xsd
cache.clear=cacheClearServiceSchema.xsd
sessiondata=SessionDataSchema.xsd

########################################################################### ################################
#
# Spring configuration integration, you REALLY shouldn't need to edit
anything below this line.
####

### Datasources

## iBatis Data Source
ibatisdatasource.driver=${databaseDriver-1}
ibatisdatasource.url=${databaseURL-1}
ibatisdatasource.username=${databaseUsername-1}
ibatisdatasource.password=${databasePassword-1}
ibatisdatasource.removeAbandoned=${databaseRemoveAbandoned-1}
ibatisdatasource.removeAbandonedTimeout=$
{databaseRemoveAbandonedTimeout-1}
ibatisdatasource.logAbandoned=${databaseLogAbandoned-1}
ibatisdatasource.maxIdle=${databaseMaxIdle-1}
ibatisdatasource.maxActive=${databaseMaxActive-1}

## LDAP Context Source
ldapcontextsource.ldapURL=${ldapURL-1}
ldapcontextsource.base=${baseDN-1}
ldapcontextsource.username=${adminUser-1}
ldapcontextsource.password=${adminPassword-1}

## ESOE Key Store Resolver
esoekeystoreresolver.keystorePath=${keystorePath-1}
esoekeystoreresolver.keystorePassword=${keystorePassword-1}
esoekeystoreresolver.keyAlias=${keyAlias-1}
esoekeystoreresolver.keyPassword=${keyPassword-1}

## Metadata Key Store Resolver
metadatakeystoreresolver.keystorePath=${keystorePath-1}
metadatakeystoreresolver.keystorePassword=${keystorePassword-1}
metadatakeystoreresolver.keyAlias=${keyAlias-2}
metadatakeystoreresolver.keyPassword=

## SQL Maps
sqlmapclient.config=WEB-INF/sqlMapConfig.xml

### SAML2 Components

## Validator
samlValidator.allowedSPEPSkew=${allowedSPEPSkew}

## Identifier Cache
identifierCache.identifierCacheClean=${identifierCacheClean}
identifierCache.identifierExpiryInterval=${identifierExpiryInterval}

### Authentication

## Processors
authnprocessorimpl.sessionTokenName=${sessionTokenName}
authnprocessorimpl.sessionDomain=${sessionDomain}

## Handlers
usernamepasswordhandler.requireCredentialsURL=${usernamePasswordURL}
usernamepasswordhandler.authenticationFailedNameValue=$
{authenticationFailedNameValue}
usernamepasswordhandler.failURL=${criticalfailureURL}
usernamepasswordhandler.successURL=${successURL}
usernamepasswordhandler.securityLevelIdentifier=$
{securityLevelIdentifer}
usernamepasswordhandler.securityLevel=${securityLevel1}

#spnegohandler.successURL=${successURL}
#spnegohandler.spnegoUserAgentID=${activeDirectoryBrowserId}
#spnegohandler.securityLevelIdentifier=${securityLevelIdentifer}
#spnegohandler.securityLevel=${securityLevel1}

## Delegated Authentication
delegauthn.deniedIdentifiers1=${securityLevelIdentifer}
delegauthn.identifier=${esoeIdentifier}

## Authenticators

# LdapBasicAuthenticator
ldapbasicauthenticator.ldapServer=${ldapServer-1}
ldapbasicauthenticator.ldapServerPort=${ldapServerPort-1}
ldapbasicauthenticator.baseDN=${baseDN-1}
ldapbasicauthenticator.identifier=${identifier-1}
ldapbasicauthenticator.recursive=${recursive-1}
ldapbasicauthenticator.disableSSL=${disableSSL-1}
ldapbasicauthenticator.adminUser=${adminUser-1}
ldapbasicauthenticator.adminPassword=${adminPassword-1}

# Kerberos V5 ...

read more »


    Reply to author    Forward  
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
Bradley Beddoes  
View profile  
 More options Sep 5 2008, 5:52 pm
From: Bradley Beddoes <bedd...@intient.com>
Date: Fri, 05 Sep 2008 17:52:32 +1000
Local: Fri, Sep 5 2008 5:52 pm
Subject: Re: [esoe-users] Re: Redirection Problem After Authentication

Hi,
Unfortunately I can't really help here - it seems like your using a
hostname instead of a domain for sessionDomain - I am not sure what the
browser will be doing in this case with regards to accepting/presenting
cookies.

Can you let us know if the browser is accepting/present esoeSession
cookie? (the logging previously provided indicated no).

regards,
Bradley

...

read more »

  beddoes.vcf
< 1K Download

    Reply to author    Forward  
You must Sign in before you can post messages.
To post a message you must first join this group.
Please update your nickname on the subscription settings page before posting.
You do not have the permission required to post.
End of messages
« Back to Discussions « Newer topic     Older topic »

Create a group - Google Groups - Google Home - Terms of Service - Privacy Policy
©2009 Google