How to auto-provision accounts when Confluence is using JASIG CAS SSO for authentication?

Hello,

I have CASified my Confluence 5 installation for single sign-on (SSO), and I was wondering if folks out there had solutions to auto-provision accounts.

CAS works, but if the user does not already have a local Confluence account with the UID set as the username, then a redirect loop occurs between the CAS client and the CAS server.

Example:

  • CAS username = johndoe
  • CAS UID = 1000
  • Confluence username = 1000 (MUST be this or things break)

Questions:

  1. Are there solutions to auto-provision accounts?
  2. There is an LDAP server in my organization where I can get UIDs from. Is LDAP my only option to auto-provision accounts before users' first login?
  3. Or is there simple way to modify the CAS client so that it will create a new Confluence user account for any successfully authenticated CAS user that does not already exist? Anyone else out there doing this on a large scale?

Side note and tip on CAS and Confluence integration:

  • To get JASIG CAS 3.3+ client to work with Confluence, there is an undocumented option that must go in your seraph-config.xml file:

Thanks!

1 answer

This widget could not be displayed.

I know this is a longshot since this post is so old but were you ever able to figure this out?  We are still not able to auto-provision accounts when using CAS, users are not able to login unless we create a local Confluence account for them first. 

Thanks,

Suggest an answer

Log in or Sign up to answer
Community showcase
Posted Monday in Confluence

Why start from scratch? Introducing four new templates for Confluence Cloud

Hi my Community friends!  For those who don't know me, I'm a product marketer on the Confluence Cloud team - nice to meet you! For those of you who do, you know that I've been all up in your Co...

280 views 2 4
Join discussion

Atlassian User Groups

Connect with like-minded Atlassian users at free events near you!

Find a group

Connect with like-minded Atlassian users at free events near you!

Find my local user group

Unfortunately there are no AUG chapters near you at the moment.

Start an AUG

You're one step closer to meeting fellow Atlassian users at your local meet up. Learn more about AUGs

Groups near you