Administrative login for Plone sites using CAS.
Project description
Introduction
This product provides administrative login functionality for Plone sites using a central authentication server (CAS).
It’s goal is to make locally stored passwords for administrative accounts obsolete and instead authenticate users with their personal, centrally managed account when logging in with an administrative account to a Plone site.
This is helpful when running a lot of Plone sites and having multiple people that need administrative access as there’s no need to share and manage administrative passwords.
Compatibility
This package is officially tested with plone 5.1.x and plone 6. Plone 4.3 should work as well, but is not tested and will not be maintained.
Session authentication plugin
A session authentication PAS plugin is automatically installed in the Zope root user folder (acl_users) if needed as the root user folder does not provide any session-based authentication on default installations. The plugin is based on plone.session.
After installation of the session plugin the password of the user defined in ADMIN_AUTH_USERID is reset to a random value to disable password-based login.
Installation
Add wcs.adminauth to the list of eggs in your buildout, run buildout and restart your instance.
Usage
Open the @@adminauth view in your browser and you will get authenticated as the adminuser user.
You can specify a different userid by providing it as an url parameter: e.g. @@adminauth?userid=john.
CAS Server URL
The CAS Server URL options has to be provided via environment variables.
Example:
ADMIN_AUTH_CAS_SERVER_URL=https://cas.example.com/
Admin users id
You need to define what user the plugin should use as central admin user (default is admin).
Example:
ADMIN_AUTH_USERID=admin
Copyright
The package is based on ftw.zopemaster (GNU General Public License, version 2)
wcs.adminauth is licensed under GNU General Public License, version 2.
Changelog
1.0.1 (2023-06-12)
Fix Manifest.in
1.0.0 (2023-06-12)
Initial release based on ftw.zopemaster 1.4.x and python-cas 1.6.0
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
File details
Details for the file wcs.adminauth-1.0.1.tar.gz
.
File metadata
- Download URL: wcs.adminauth-1.0.1.tar.gz
- Upload date:
- Size: 11.0 kB
- Tags: Source
- Uploaded using Trusted Publishing? No
- Uploaded via: twine/4.0.2 CPython/3.11.1
File hashes
Algorithm | Hash digest | |
---|---|---|
SHA256 | 93219bdfd4132b4344652da3618a707e4af55e8024a4f4cd8d3d1a3c8ba5c576 |
|
MD5 | c81571c9c7035fe9c6971612cd373bb2 |
|
BLAKE2b-256 | eafcbce3261750f98926fdc79a4ce1951ffd0d25f782354821acc11dd910e7ba |