Advertisement
Guest User

Untitled

a guest
Oct 12th, 2017
80
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 13.72 KB | None | 0 0
  1. cas.server.name: https://localhost:8080
  2. cas.server.prefix: https://localhost:8080/cas
  3.  
  4. logging.config: file:/etc/cas/config/log4j2.xml
  5. cas.serviceRegistry.config.location:file:/etc/cas/services
  6.  
  7. server.port = 8080
  8. cas.authn.oidc.issuer=https://localhost:8080/cas/oidc
  9.  
  10. server.ssl.keyStore=file:/home/.keystore
  11. server.ssl.keyStorePassword=changeit
  12. server.ssl.keyPassword=changeit
  13. server.ssl.keyAlias=tomcat
  14.  
  15.  
  16. cas.authn.accept.users =
  17.  
  18. #Ldap authentication section
  19. #cas.authn.ldap[0].type=AD
  20. #cas.authn.ldap[0].ldapUrl=ldap://172.16.20.21:389
  21. #cas.authn.ldap[0].useSsl=false
  22. #cas.authn.ldap[0].useStartTls=false
  23. #cas.authn.ldap[0].connectTimeout=3000
  24. #cas.authn.ldap[0].baseDn=cn=Users,dc=uib,dc=dev
  25. #cas.authn.ldap[0].userFilter=sAMAccountName={user}
  26. #cas.authn.ldap[0].subtreeSearch=true
  27. #cas.authn.ldap[0].bindDn=cn=Administrator,cn=Users,dc=uib,dc=dev
  28. #cas.authn.ldap[0].bindCredential=Pr0xym-1T
  29. #cas.authn.ldap[0].dnFormat=cn=%s,cn=Users,dc=uib,dc=dev
  30. #cas.authn.ldap[0].principalAttributeId=sAMAccountName
  31. #cas.authn.ldap[0].principalAttributePassword=userPassword
  32. #cas.authn.ldap[0].minPoolSize=10
  33. #cas.authn.ldap[0].maxPoolSize=1
  34. #cas.authn.ldap[0].validateOnCheckout=false
  35. #cas.authn.ldap[0].validatePeriodically=true
  36. #cas.authn.ldap[0].validatePeriod=300
  37. #cas.authn.ldap[0].idleTime=600
  38. #cas.authn.ldap[0].prunePeriod=300
  39. #cas.authn.ldap[0].blockWaitTime=3000
  40. # cas.authn.ldap[0].usePasswordPolicy=true
  41.  
  42.  
  43.  
  44. cas.authn.rest.uri=http://192.168.211.190:8090/Cas-Api-Auth/Ajec_sso_api_auth/casAuth
  45.  
  46.  
  47.  
  48. #Themes properties
  49. cas.theme.defaultThemeName=ajman
  50. cas.theme.paramName=ajman
  51.  
  52. #Services registry section
  53.  
  54. #cas.serviceRegistry.initFromJson=true
  55. #cas.serviceRegistry.jpa.healthQuery=SELECT 1
  56. #cas.serviceRegistry.jpa.url=jdbc:mysql://localhost:3306/CAS
  57. #cas.serviceRegistry.jpa.dialect=org.hibernate.dialect.MySQL5Dialect
  58. #cas.serviceRegistry.jpa.user=root
  59. #cas.serviceRegistry.jpa.ddlAuto=update
  60. #cas.serviceRegistry.jpa.password=Pr0xym-1T
  61. #cas.serviceRegistry.jpa.driverClass=com.mysql.cj.jdbc.Driver
  62. #cas.serviceRegistry.jpa.isolateInternalQueries=false
  63. #cas.serviceRegistry.jpa.failFast=true
  64. #cas.serviceRegistry.jpa.leakThreshold=10
  65. #cas.serviceRegistry.jpa.batchSize=1
  66. #cas.serviceRegistry.jpa.defaultCatalog=
  67. #cas.serviceRegistry.jpa.defaultSchema=
  68. #cas.serviceRegistry.jpa.autocommit=true
  69. #cas.serviceRegistry.jpa.idleTimeout=5000
  70. cas.serviceRegistry.initFromJson=true
  71. cas.serviceRegistry.jpa.healthQuery=select 1
  72. cas.serviceRegistry.jpa.url=jdbc:sqlserver://192.168.212.226;useNTLMv2=true;database=AJMANPROD;
  73.  
  74. cas.serviceRegistry.jpa.dialect=org.hibernate.dialect.SQLServer2012Dialect
  75. cas.serviceRegistry.jpa.user=ssouser12
  76.  
  77. cas.serviceRegistry.jpa.ddlAuto=update
  78. cas.serviceRegistry.jpa.password=Pr0xym-1T
  79.  
  80. cas.serviceRegistry.jpa.driverClass=com.microsoft.sqlserver.jdbc.SQLServerDriver
  81.  
  82.  
  83. #Synchronize and resolve attributes
  84. cas.authn.attributeRepository.ldap[0].attributes.uid=uid
  85. cas.authn.attributeRepository.ldap[0].attributes.displayName=displayName
  86. cas.authn.attributeRepository.ldap[0].attributes.cn=commonName
  87. cas.authn.attributeRepository.ldap[0].attributes.affiliation=groupMembership
  88. #cas.authn.attributeRepository.ldap[0].attributes.cn=cn
  89. cas.authn.attributeRepository.ldap[0].attributes.emailAjecUser=emailAjecUser
  90. cas.authn.attributeRepository.ldap[0].attributes.sAMAccountName=sAMAccountName
  91. cas.authn.attributeRepository.ldap[0].attributes.userName=userName
  92. cas.authn.attributeRepository.ldap[0].attributes.accountTypeAjecUser=accountTypeAjecUser
  93. cas.authn.attributeRepository.ldap[0].attributes.trustLevel=trustLevel
  94. cas.authn.attributeRepository.ldap[0].attributes.passportNumberAjecUser=passportNumberAjecUser
  95. cas.authn.attributeRepository.ldap[0].attributes.countryCodeAjecUser=countryCodeAjecUser
  96. cas.authn.attributeRepository.ldap[0].attributes.tradeLicenseNumberAjecUser=tradeLicenseNumberAjecUser
  97. cas.authn.attributeRepository.ldap[0].attributes.emirateAjecUser=emirateAjecUser
  98. cas.authn.attributeRepository.ldap[0].attributes.companyNameAjecUser=companyNameAjecUser
  99. cas.authn.attributeRepository.ldap[0].attributes.mobileNumber=mobileNumber
  100. cas.authn.attributeRepository.ldap[0].attributes.genderAjecUser=genderAjecUser
  101. cas.authn.attributeRepository.ldap[0].attributes.birthDateAjecUser=birthDateAjecUser
  102. cas.authn.attributeRepository.ldap[0].attributes.contactLanguageAjecUser=contactLanguageAjecUser
  103. cas.authn.attributeRepository.ldap[0].attributes.contactMethodAjecUser=contactMethodAjecUser
  104. cas.authn.attributeRepository.ldap[0].attributes.addressAjecUser=addressAjecUser
  105. cas.authn.attributeRepository.ldap[0].attributes.password=password
  106. cas.authn.attributeRepository.ldap[0].attributes.eidAjecUser=eidAjecUser
  107. cas.authn.attributeRepository.ldap[0].attributes.accountExpires=accountExpires
  108. cas.authn.attributeRepository.ldap[0].attributes.accountTypeUser=accountTypeUser
  109. cas.authn.attributeRepository.ldap[0].attributes.tokenAjecUser=tokenAjecUser
  110. #cas.authn.attributeRepository.ldap[0].attributes.userPassword=userPassword
  111. cas.authn.attributeRepository.ldap[0].attributes.lastName=lastName
  112. cas.authn.attributeRepository.ldap[0].attributes.firstName=firstName
  113. cas.authn.ldap[0].principalAttributeList=cn,sAMAccountName,sn,co,givenName,accountTypeUser,genderAjecUser,birthDateAjecUser
  114. cas.authn.attributeRepository.defaultAttributesToRelease=cn,sAMAccountName,sn,co,givenName,accountTypeUser,genderAjecUser,birthDateAjecUser
  115. #cas.authn.attributeRepository.ldap[0].ldapUrl=ldap://172.16.20.21:389
  116. # cas.authn.attributeRepository.ldap[0].connectionStrategy=
  117. #cas.authn.attributeRepository.ldap[0].order=0
  118. #cas.authn.attributeRepository.ldap[0].useSsl=false
  119. #cas.authn.attributeRepository.ldap[0].useStartTls=false
  120. #cas.authn.attributeRepository.ldap[0].connectTimeout=5000
  121. #cas.authn.attributeRepository.ldap[0].baseDn=cn=Users,dc=uib,dc=dev
  122. #cas.authn.attributeRepository.ldap[0].userFilter=sAMAccountName={user}
  123. #cas.authn.attributeRepository.ldap[0].subtreeSearch=true
  124. #cas.authn.attributeRepository.ldap[0].bindDn=cn=Administrator,cn=Users,dc=uib,dc=dev
  125. #cas.authn.attributeRepository.ldap[0].bindCredential=Pr0xym-1T
  126. # cas.authn.attributeRepository.ldap[0].trustCertificates=
  127. # cas.authn.attributeRepository.ldap[0].keystore=
  128. # cas.authn.attributeRepository.ldap[0].keystorePassword=
  129. # cas.authn.attributeRepository.ldap[0].keystoreType=JKS|JCEKS|PKCS12
  130. # cas.authn.attributeRepository.ldap[0].poolPassivator=NONE|CLOSE|BIND
  131. #cas.authn.attributeRepository.ldap[0].minPoolSize=3
  132. #cas.authn.attributeRepository.ldap[0].maxPoolSize=10
  133. # cas.authn.attributeRepository.ldap[0].validateOnCheckout=true
  134. # cas.authn.attributeRepository.ldap[0].validatePeriodically=true
  135. # cas.authn.attributeRepository.ldap[0].validatePeriod=600
  136. # cas.authn.attributeRepository.ldap[0].validateTimeout=5000
  137. # cas.authn.attributeRepository.ldap[0].failFast=true
  138. # cas.authn.attributeRepository.ldap[0].idleTime=500
  139. # cas.authn.attributeRepository.ldap[0].prunePeriod=600
  140. # cas.authn.attributeRepository.ldap[0].blockWaitTime=5000
  141. # cas.authn.attributeRepository.ldap[0].providerClass=org.ldaptive.provider.unboundid.UnboundIDProvider
  142.  
  143. # cas.authn.attributeRepository.ldap[0].validator.type=NONE|SEARCH|COMPARE
  144. # cas.authn.attributeRepository.ldap[0].validator.baseDn=
  145. # cas.authn.attributeRepository.ldap[0].validator.searchFilter=(objectClass=*)
  146. # cas.authn.attributeRepository.ldap[0].validator.scope=OBJECT|ONELEVEL|SUBTREE
  147. # cas.authn.attributeRepository.ldap[0].validator.attributeName=objectClass
  148. # cas.authn.attributeRepository.ldap[0].validator.attributeValues=top
  149. # cas.authn.attributeRepository.ldap[0].validator.dn=
  150. # Map fixed claims to CAS attributes
  151. cas.authn.oidc.claimsMap.eidAjecUserClaim=eidAjecUser
  152. cas.authn.oidc.claimsMap.passportNumberAjecUserClaim=passportNumberAjecUser
  153. cas.authn.oidc.claimsMap.emailAjecUserClaim=emailAjecUser
  154. cas.authn.oidc.claimsMap.sAMAccountNameClaim=sAMAccountName
  155. cas.authn.oidc.claimsMap.userNameClaim=userName
  156. cas.authn.oidc.claimsMap.contactLanguageAjecUserClaim=contactLanguageAjecUser
  157. #cas.authn.oidc.claimsMap.passwordClaim=password
  158. #cas.authn.oidc.claimsMap.userPasswordClaim=userPassword
  159. cas.authn.oidc.claimsMap.lastNameClaim=lastName
  160. cas.authn.oidc.claimsMap.contactMethodAjecUserClaim=contactMethodAjecUser
  161. cas.authn.oidc.claimsMap.tokenAjecUserClaim=tokenAjecUser
  162. cas.authn.oidc.claimsMap.tradeLicenseNumberAjecUserClaim=tradeLicenseNumberAjecUser
  163. cas.authn.oidc.claimsMap.accountExpiresClaim=accountExpires
  164. cas.authn.oidc.claimsMap.accountTypeAjecUserClaim=accountTypeAjecUser
  165. cas.authn.oidc.claimsMap.trustLevelClaim=trustLevel
  166. cas.authn.oidc.claimsMap.companyNameAjecUserClaim=companyNameAjecUser
  167. cas.authn.oidc.claimsMap.addressAjecUserClaim=addressAjecUser
  168. cas.authn.oidc.claimsMap.countryCodeAjecUserClaim=countryCodeAjecUser
  169. cas.authn.oidc.claimsMap.emirateAjecUserClaim=emirateAjecUser
  170. cas.authn.oidc.claimsMap.mobileNumberClaim = mobileNumber
  171. cas.authn.oidc.claimsMap.firstNameClaim = firstName
  172. cas.authn.oidc.claims=firstNameClaim,mobileNumberClaim,passportNumberAjecUserClaim,addressAjecUserClaim,countryCodeAjecUserClaim,companyNameAjecUserClaim,emirateAjecUserClaim,emailAjecUserClaim,accountTypeAjecUserClaim,trustLevelClaim,accountExpiresClaim,tradeLicenseNumberAjecUserClaim,tokenAjecUserClaim,contactMethodAjecUserClaim,lastNameClaim,contactLanguageAjecUserClaim,userNameClaim,sAMAccountNameClaim,sub,name,preferred_username,family_name,given_name,middle_name,given_name,profile,picture,nickname,website,zoneinfo,locale,updated_at,birthdate,email,email_verified,phone_number,phone_number_verified,address,emailAjecUser,birthDateAjecUser,eidAjecUserClaim
  173. cas.authn.oidc.scopes=openid,profile,email,address,phone,offline_access,ajman_profile
  174.  
  175. cas.authn.oidc.userDefinedScopes.ajman_profile=firstNameClaim,mobileNumberClaim,passportNumberAjecUserClaim,companyNameAjecUserClaim,countryCodeAjecUserClaim,addressAjecUserClaim,emirateAjecUserClaim,companyNameAjecUser,countryCodeAjecUser,accountExpiresClaim,cn,accountTypeAjecUserClaim,trustLevelClaim,tradeLicenseNumberAjecUserClaim,tradeLicenseNumberAjecUserClaim,userNameClaim,tokenAjecUserClaim,contactMethodAjecUserClaim,lastNameClaim,passportNumberAjecUserClaim,contactLanguageAjecUserClaim,userPasswordClaim,passwordClaim,sAMAccountNameClaim,emailAjecUserClaim,birthDateAjecUser,eidAjecUserClaim
  176.  
  177.  
  178.  
  179.  
  180.  
  181.  
  182.  
  183.  
  184. #Rest Access Properties
  185. cas.rest.attributeName=cn
  186. cas.rest.attributeValue=Administrator
  187. cas.rest.throttler=neverThrottle
  188.  
  189. cas.serviceRegistry.watcherEnabled=true
  190. cas.serviceRegistry.repeatInterval=120000
  191.  
  192. # IP address may be enough to protect all endpoints.
  193. # If you wish to protect the admin pages via CAS itself, configure the rest.
  194. #cas.adminPagesSecurity.ip=127\.0\.0\.1
  195. cas.adminPagesSecurity.loginUrl=https://localhost:8080/cas/login
  196. cas.adminPagesSecurity.service=https://localhost:8080/cas/status/dashboard
  197. cas.adminPagesSecurity.users=file:/etc/cas/config/adminusers.properties
  198. cas.adminPagesSecurity.adminRoles=ROLE_ADMIN
  199.  
  200. cas.adminPagesSecurity.actuatorEndpointsEnabled=true
  201.  
  202.  
  203. #MYSQL CONFIGURATION
  204. # cas.ticket.registry.jpa.ticketLockType=NONE
  205. # cas.ticket.registry.jpa.jpaLockingTimeout=3600
  206. ##cas.ticket.registry.jpa.healthQuery=SELECT 1
  207. # cas.ticket.registry.jpa.isolateInternalQueries=false
  208. ##cas.ticket.registry.jpa.url=jdbc:mysql://localhost:3306/CAS
  209. # cas.ticket.registry.jpa.failFast=true
  210. ##cas.ticket.registry.jpa.dialect=org.hibernate.dialect.MySQL5Dialect
  211. # cas.ticket.registry.jpa.leakThreshold=10
  212. # cas.ticket.registry.jpa.jpaLockingTgtEnabled=true
  213. # cas.ticket.registry.jpa.batchSize=1
  214. # cas.ticket.registry.jpa.defaultCatalog=
  215. # cas.ticket.registry.jpa.defaultSchema=
  216. ##cas.ticket.registry.jpa.user=root
  217. ##cas.ticket.registry.jpa.ddlAuto=update
  218. ##cas.ticket.registry.jpa.password=Pr0xym-1T
  219. # cas.ticket.registry.jpa.autocommit=false
  220. ##cas.ticket.registry.jpa.driverClass=com.mysql.cj.jdbc.Driver
  221. # cas.ticket.registry.jpa.idleTimeout=5000
  222. # cas.ticket.registry.jpa.dataSourceName=
  223. # cas.ticket.registry.jpa.dataSourceProxy=false
  224.  
  225. # cas.ticket.registry.jpa.pool.suspension=false
  226. # cas.ticket.registry.jpa.pool.minSize=6
  227. # cas.ticket.registry.jpa.pool.maxSize=18
  228. # cas.ticket.registry.jpa.pool.maxWait=2000
  229.  
  230. # cas.ticket.registry.jpa.crypto.signing.key=
  231. # cas.ticket.registry.jpa.crypto.signing.keySize=512
  232. # cas.ticket.registry.jpa.crypto.encryption.key=
  233. # cas.ticket.registry.jpa.crypto.encryption.keySize=16
  234. # cas.ticket.registry.jpa.crypto.alg=AES
  235.  
  236.  
  237. #SQLSERVER CONFIGURATION
  238. # cas.ticket.registry.jpa.ticketLockType=NONE
  239. # cas.ticket.registry.jpa.jpaLockingTimeout=3600
  240. cas.ticket.registry.jpa.healthQuery=select 1
  241. # cas.ticket.registry.jpa.isolateInternalQueries=false
  242. cas.ticket.registry.jpa.url=jdbc:sqlserver://192.168.212.226;useNTLMv2=true;database=AJMANPROD;
  243. # cas.ticket.registry.jpa.failFast=true
  244. cas.ticket.registry.jpa.dialect=org.hibernate.dialect.SQLServer2012Dialect
  245. # cas.ticket.registry.jpa.leakThreshold=10
  246. # cas.ticket.registry.jpa.jpaLockingTgtEnabled=true
  247. # cas.ticket.registry.jpa.batchSize=1
  248. # cas.ticket.registry.jpa.defaultCatalog=
  249. # cas.ticket.registry.jpa.defaultSchema=
  250. cas.ticket.registry.jpa.user=ssouser12
  251.  
  252. cas.ticket.registry.jpa.ddlAuto=update
  253. cas.ticket.registry.jpa.password=Pr0xym-1T
  254.  
  255.  
  256. # cas.ticket.registry.jpa.autocommit=false
  257. cas.ticket.registry.jpa.driverClass=com.microsoft.sqlserver.jdbc.SQLServerDriver
  258. # cas.ticket.registry.jpa.idleTimeout=5000
  259. # cas.ticket.registry.jpa.dataSourceName=
  260. # cas.ticket.registry.jpa.dataSourceProxy=false
  261.  
  262. # cas.ticket.registry.jpa.pool.suspension=false
  263. # cas.ticket.registry.jpa.pool.minSize=6
  264. # cas.ticket.registry.jpa.pool.maxSize=18
  265. # cas.ticket.registry.jpa.pool.maxWait=2000
  266.  
  267. # cas.ticket.registry.jpa.crypto.signing.key=
  268. # cas.ticket.registry.jpa.crypto.signing.keySize=512
  269. # cas.ticket.registry.jpa.crypto.encryption.key=
  270. # cas.ticket.registry.jpa.crypto.encryption.keySize=16
  271. # cas.ticket.registry.jpa.crypto.alg=AES
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement