Uploaded image for project: 'Crowd Data Center'
  1. Crowd Data Center
  2. CWD-774

Central sign-on page with NTLM HTTP authentication for web applications

XMLWordPrintable

    • 4
    • Our product teams collect and evaluate feedback from a number of different sources. To learn more about how we use customer feedback in the planning process, check out our new feature policy.

      In my organisation many of the java web apps use acegi (spring security) filters to detect if a user has logged on. If users have not logged on they are redirected to a central CAS logon page which transparently logs them on with their windows domain credentials (if they are using IE, if firefox, they manually type in their details). Then they are redirected back to the page they came from.

      This works well because individual web apps dont have to worry about the logon mechanism, or writing logon pages with NTLM HTTP authentication.

      Could crowd provide a facility like this? The web page (assuming IE) should log users in automatically, and redirect them to the application url they came from. If they logged in successfully, crowd would then issue a cookie - allowing all apps participating in sso to be logged in.

              Unassigned Unassigned
              4f5f971d4d27 venn hardy
              Votes:
              6 Vote for this issue
              Watchers:
              5 Start watching this issue

                Created:
                Updated: