Skip Menu |

This queue is for tickets about the Authen-CAS-Client CPAN distribution.

Report information
The Basics
Id: 125833
Status: new
Priority: 0/
Queue: Authen-CAS-Client

People
Owner: Nobody in particular
Requestors: TCOHEN [...] cpan.org
Cc:
AdminCc:

Bug Information
Severity: Important
Broken in: 0.07
Fixed in: (no value)



Subject: Logout behaviour change in CAS 3
It seems there's a behaviour change in version 3 that needs to be handled on the library. The url parameter defined in the former CAS 2.0 specification is not a valid parameter in CAS 3.0 anymore. CAS Servers MUST ignore given url parameters. A CAS client MAY provide the service parameter as described above, as this ensures the parameter is validated against the registered service URLs when operating in non-open mode. See 2.3.2 for details: https://github.com/apereo/cas/blob/master/docs/cas-server-documentation/protocol/CAS-Protocol-Specification.md#23-logout