X-Git-Url: https://git.mdrn.pl/piwik-CASLogin.git/blobdiff_plain/237569a1cfdd478618b0ecda78a7ac13548c515f..dc6aefd9f59af623481149a8b6c71b973efd1196:/CAS/docs/examples/example_advanced_saml11.php diff --git a/CAS/docs/examples/example_advanced_saml11.php b/CAS/docs/examples/example_advanced_saml11.php new file mode 100644 index 0000000..0efdd8c --- /dev/null +++ b/CAS/docs/examples/example_advanced_saml11.php @@ -0,0 +1,80 @@ + + * @author Adam Franco + * @license http://www.apache.org/licenses/LICENSE-2.0 Apache License 2.0 + * @link https://wiki.jasig.org/display/CASC/phpCAS + */ + +// Load the settings from the central config file +require_once 'config.php'; +// Load the CAS lib +require_once $phpcas_path . '/CAS.php'; + +// Uncomment to enable debugging +phpCAS::setDebug(); + +// Initialize phpCAS +phpCAS::client(SAML_VERSION_1_1, $cas_host, $cas_port, $cas_context); + +// For production use set the CA certificate that is the issuer of the cert +// on the CAS server and uncomment the line below +phpCAS::setCasServerCACert($cas_server_ca_cert_path); + +// For quick testing you can disable SSL validation of the CAS server. +// THIS SETTING IS NOT RECOMMENDED FOR PRODUCTION. +// VALIDATING THE CAS SERVER IS CRUCIAL TO THE SECURITY OF THE CAS PROTOCOL! +// phpCAS::setNoCasServerValidation(); + +// Handle SAML logout requests that emanate from the CAS host exclusively. +// Failure to restrict SAML logout requests to authorized hosts could +// allow denial of service attacks where at the least the server is +// tied up parsing bogus XML messages. +phpCAS::handleLogoutRequests(true, $cas_real_hosts); + +// Force CAS authentication on any page that includes this file +phpCAS::forceAuthentication(); + +// Some small code triggered by the logout button +if (isset($_REQUEST['logout'])) { + phpCAS::logout(); +} +?> + + + Advanced SAML 1.1 example + + +

Advanced SAML 1.1 example

+ + +Authentication succeeded for user +. + +

User Attributes

+ +

Logout

+ + \ No newline at end of file