Skip to Content.
Sympa Menu

cat-users - Re: [[cat-users]] suggest/verify realm suffix feature?

cat-users AT lists.geant.org

Subject: The mailing list for users of the eduroam Configuration Assistant Tool (CAT)

List archive

Re: [[cat-users]] suggest/verify realm suffix feature?


Chronological Thread 
  • From: Stefan Winter <stefan.winter AT restena.lu>
  • To: Zenon Mousmoulas <zmousm AT noc.grnet.gr>
  • Cc: cat-users AT lists.geant.org
  • Subject: Re: [[cat-users]] suggest/verify realm suffix feature?
  • Date: Tue, 20 Sep 2016 08:37:41 +0200
  • Openpgp: id=AD3091F3AB24E05F4F722C03C0DE6A358A39DC66; url=http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xC0DE6A358A39DC66

Hello,

>> Meanwhile, options for the former appeared in the "trunk"[1] UI, but
>> they don't seem to be implemented beyond that: if enabled, upon saving
>> the profile, the server says "Input validation error: Unknown state of
>> boolean option!"
>
> I'll look into this today.

In fact, I can't reproduce that - I can set and get those options in
admin UI just fine, with curent master.

The code relies on standard behaviour of the browser - when a checkbox
is set, it's default value is "on". Maybe you use a browser which
(mistakenly?) uses a different default value?

I write mistakenly because stackoverflow has good evidence that anything
else than "on" is not standardised:

http://stackoverflow.com/questions/12911787/html-checkbox-default-value#12915174

In any case, can we please continue this conversation on cat-devel? It
has no importance to the general -users mailing list. I'm setting reply-to.

Greetings,

Stefan Winter

>
>> So the question is: Has this "feature" been abandoned after all or what?
>
> If a feature were abandoned, the code would be removed. You'll also see
> that other new features are already present in the admin-UI but haven't
> made their way into the device modules yet. Particularly the federation
> name and logo which are to be presented alongside the IdP logo for more
> effective co-branding.
>
>> If not (by any chance), is there any time-frame for release?
>
> That feature will be part of release 1.2.
>
>> It's still the most common "trap" for most new users and thus (still)
>> the most common question.
>> And may I add wrt the {device,EAP}-specific text (which would help,
>> agreed) that there is no programmatic way (admin API method) to set such
>> text in bulk.
>
> That's because I assumed that setting this or not is highly
> IdP-specific. Where one org may have the domain part mandatory in the
> inner identity, another may simply not care because it authenticates the
> inner identity with or without, and a third one does not want it at all
> because they exclusively consider realmless IDs in the TLS tunnel.
>
> It's interesting to learn that you consider that as something to set for
> the federation operator. How do you know which style your IdPs
> want/need? Is this something they can indicate in DjNRO?
>
> Greetings,
>
> Stefan Winter
>>
>> Thanks,
>> Z.
>>
>> [1] https://cat-test.eduroam.org/trunk/admin/
>> To unsubscribe, send this message:
>> mailto:sympa AT lists.geant.org?subject=unsubscribe%20cat-users
>> Or use the following link:
>> https://lists.geant.org/sympa/sigrequest/cat-users
>
>


--
Stefan WINTER
Ingenieur de Recherche
Fondation RESTENA - Réseau Téléinformatique de l'Education Nationale et
de la Recherche
2, avenue de l'Université
L-4365 Esch-sur-Alzette

Tel: +352 424409 1
Fax: +352 422473

PGP key updated to 4096 Bit RSA - I will encrypt all mails if the
recipient's key is known to me

http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xC0DE6A358A39DC66

Attachment: 0x8A39DC66.asc
Description: application/pgp-keys

Attachment: signature.asc
Description: OpenPGP digital signature




Archive powered by MHonArc 2.6.19.

Top of Page