Security Advisories (2)
CPANSA-Jifty-2011-01 (2011-03-17)

The path as passed in the fragment request data structure was used verbatim in the dispatcher and other locations. This possibly allowed requests to walk around ACLs by requesting '/some/safe/place/../../../dangerous' as a fragment.

CPANSA-Jifty-2009-01 (2009-04-09)

The REST plugin would let you call any method on the model.

NAME

Jifty::Plugin::Authentication::CAS

DESCRIPTION

This may be combined with the Jifty::Plugin::User plugin to provide user authentication using JA-SIG CAS protocol to your application.

https is managed with Crypt::SSLeay

CONFIG

in etc/config.yml

 Plugins: 
   - Authentication::CAS: 
      CASUrl: https://auth.univ-metz.fr/cas
      CASDomain: univ-metz.fr                  # optional: create email if login@domain is valid

METHODS

prereq_plugins

This plugin depends on the User plugin.

init

load config

TODO

add a ldap config to get more attributes

SEE ALSO

Jifty::Manual::AccessControl, Jifty::Plugin::User, Authen::CAS::Client

LICENSE

Jifty is Copyright 2005-2007 Best Practical Solutions, LLC. Jifty is distributed under the same terms as Perl itself.