三.取消https,直接http訪問


1.WEB-INF/deployerConfigContext.xml

<bean class = "org.jasig.cas.authentication.handler.support.HttpBasedServiceCredentialsAuthenticationHandler" p:httpClient-ref = "httpClient" />

增加參數 p:requireSecure="false" ,是否需要安全驗證,即 HTTPS false 為不采用 如下:

<bean class = "org.jasig.cas.authentication.handler.support.HttpBasedServiceCredentialsAuthenticationHandler" p:httpClient-ref = "httpClient" p:requireSecure= "false" />      

 

2.WEB-INF/spring-configuration/ticketGrantingTicketCookieGenerator.xml

修改 p:cookieSecure="true" p:cookieSecure=" false " , 即不需要安全 cookie

如下部分:

<bean id = "ticketGrantingTicketCookieGenerator" class = "org.jasig.cas.web.support.CookieRetrievingCookieGenerator"

   p:cookieSecure = " false "

   p:cookieMaxAge = "-1"

   p:cookieName = "CASTGC"

   p:cookiePath = "/cas" />

 

3.WEB-INF\spring-configuration\warnCookieGenerator.xml

修改 p:cookieSecure="true" p:cookieSecure=" false " , 即不需要安全 cookie

結果如下:

<bean id = "warnCookieGenerator" class = "org.jasig.cas.web.support.CookieRetrievingCookieGenerator"

   p:cookieSecure = " false "

   p:cookieMaxAge = "-1"

   p:cookieName = "CASPRIVACY"

   p:cookiePath = "/cas" />

 

4.修改 services/Apereo-10000002.json下面的serviceIdhttps改成http

 

5.修改 services/services\HTTPSandIMAPS-10000001.json下面的serviceIdhttps改成http

 

客戶端tomcat分別修改login-tomcat-8.0.12\webapps\examples\WEB-INF\web.xmlblog-tomcat-8.0.12\webapps\examples\WEB-INF\web.xml

修改成http和相對於的端口號

 

訪問地址分別為:

http://login.hacker.org:18080/examples/servlets/servlet/HelloWorldExample

http://blog.hacker.org:28080/examples/servlets/servlet/HelloWorldExample

http://server.hacker.org:8080/cas/logout


免責聲明!

本站轉載的文章為個人學習借鑒使用,本站對版權不負任何法律責任。如果侵犯了您的隱私權益,請聯系本站郵箱yoyou2525@163.com刪除。



 
粵ICP備18138465號   © 2018-2025 CODEPRJ.COM