Dashboard > Central Authentication Service > Home > CAS 4 Roadmap
CAS has a new home page: http://www.ja-sig.org/products/cas/
Central Authentication Service Log In | Sign Up   View a printable version of the current page.
CAS 4 Roadmap

Added by Benn Oshrin , last edited by Scott Battaglia on Apr 29, 2008  (view change)
Labels: 

Draft

This list is a draft, no warranty is implied.

Potential initiatives and use cases that could be addressed in CAS 4.0 (or other releases).

Label Description Target Contributer Priority Complexity Dependencies Notes
1 Multi Factor Authentication            
2 Expired Password Integration 4.0 (3.x?)          
3 CAS provides attributes to Service Provider: Credential Type/LoA, Auth Time, Expiration Time, Biodem Data (server side config and/or with user permission), User agent attributes as CAS attributes 3.x - 4.0
        Started in 3.x with SAML support (or custom CAS2 protocol).  Enhance support in 4.0
4 Service Provider specifies minimum authentication strength / authentication type / specified LoA 4.0          
5 Remember Me Supported (Improved in 4.0)
        Supported, but could use hardening of stored tokens and better indicator of whether its currently remember me or not
6 AllowedAuthenticationHandlers for RegisteredService            
7 Variable Single Sign On Expiration: Users selected; Admin controlled by auth attributes            
8 Complete Audit Trail Supported     -   Utilizes the Inspektr package
9 Internationalization Supported / 4.0
    Enormous   Dependent on getting people to do the translations
10 Ability for Service Provider to determine if SSO session still valid 4.0 / Not At All
        This is difficult as a user can have multiple SSO sessions (unless we eliminate that feature)
11 Clusterable Single Sign On Service Instances Supported     -    
12 Embedded login page Supported     -    
13 Warnings (eg: your password will expire in 10 days)/Messages (/etc/motd) 4.0     Medium    
14 Ability for user to see what SSO sessions have been created 3.x     Small    
15 Web-based configuration/installer       Enormous    
16 Hardening/Anti-Phishing 3.x - 4.0
        Could include CAPTCHA, the selecting username and then showing an image, etc.
17 Improve PGT callback protocol performance/scalability 3.x     Medium    
18 Review CAS internal architecture 4.0     Large   Scott has some code that may help with this.
19 Federation (lite?) across multiple CAS servers 4.0     Large    
20 Extend CAS to black box applications not currently CASifiable 4.0     Enormous   We sort of support this by being able to negotiate protocols on the CAS server side (i.e. Google Apps)
Powered by a free Atlassian Confluence Open Source Project License granted to Java Architectures Special Interest Group. Evaluate Confluence today.
Powered by Atlassian Confluence 2.7.3, the Enterprise Wiki. Bug/feature request - Atlassian news - Contact administrators