<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="ru">
	<id>http://wiki.mipt.ru/index.php?action=history&amp;feed=atom&amp;title=CAS_server_%28SSO%29_authentication</id>
	<title>CAS server (SSO) authentication - История изменений</title>
	<link rel="self" type="application/atom+xml" href="http://wiki.mipt.ru/index.php?action=history&amp;feed=atom&amp;title=CAS_server_%28SSO%29_authentication"/>
	<link rel="alternate" type="text/html" href="http://wiki.mipt.ru/index.php?title=CAS_server_(SSO)_authentication&amp;action=history"/>
	<updated>2026-05-06T13:33:47Z</updated>
	<subtitle>История изменений этой страницы в вики</subtitle>
	<generator>MediaWiki 1.42.1</generator>
	<entry>
		<id>http://wiki.mipt.ru/index.php?title=CAS_server_(SSO)_authentication&amp;diff=33064&amp;oldid=prev</id>
		<title>Олег Давидович в 09:08, 5 февраля 2026</title>
		<link rel="alternate" type="text/html" href="http://wiki.mipt.ru/index.php?title=CAS_server_(SSO)_authentication&amp;diff=33064&amp;oldid=prev"/>
		<updated>2026-02-05T09:08:16Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;table style=&quot;background-color: #fff; color: #202122;&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;ru&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Предыдущая версия&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Версия от 09:08, 5 февраля 2026&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l31&quot;&gt;Строка 31:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Строка 31:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;Please post in the [http://moodle.org/mod/forum/view.php?id=42 Authentication forum] on moodle.org&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;Please post in the [http://moodle.org/mod/forum/view.php?id=42 Authentication forum] on moodle.org&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;−&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;[[&lt;del style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;fr&lt;/del&gt;:&lt;del style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;Utiliser un serveur CAS (SSO)&lt;/del&gt;]]&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;[[&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;Категория&lt;/ins&gt;:&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;Аутентификация&lt;/ins&gt;]]&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;−&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;[[&lt;del style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;de&lt;/del&gt;:&lt;del style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;CAS-Server]]&lt;/del&gt;&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;[[&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;Категория&lt;/ins&gt;:&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;Способы зачисления на курс&lt;/ins&gt;]]&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;−&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;del style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;[[es:Autenticación por servidor CAS (SSO)&lt;/del&gt;]]&lt;/div&gt;&lt;/td&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-added&quot;&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;</summary>
		<author><name>Олег Давидович</name></author>
	</entry>
	<entry>
		<id>http://wiki.mipt.ru/index.php?title=CAS_server_(SSO)_authentication&amp;diff=2227&amp;oldid=prev</id>
		<title>Олег Давидович: 1 версия импортирована</title>
		<link rel="alternate" type="text/html" href="http://wiki.mipt.ru/index.php?title=CAS_server_(SSO)_authentication&amp;diff=2227&amp;oldid=prev"/>
		<updated>2024-10-18T06:31:10Z</updated>

		<summary type="html">&lt;p&gt;1 версия импортирована&lt;/p&gt;
&lt;table style=&quot;background-color: #fff; color: #202122;&quot; data-mw=&quot;interface&quot;&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;ru&quot;&gt;
				&lt;td colspan=&quot;1&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Предыдущая версия&lt;/td&gt;
				&lt;td colspan=&quot;1&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Версия от 06:31, 18 октября 2024&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-notice&quot; lang=&quot;ru&quot;&gt;&lt;div class=&quot;mw-diff-empty&quot;&gt;(нет различий)&lt;/div&gt;
&lt;/td&gt;&lt;/tr&gt;&lt;/table&gt;</summary>
		<author><name>Олег Давидович</name></author>
	</entry>
	<entry>
		<id>http://wiki.mipt.ru/index.php?title=CAS_server_(SSO)_authentication&amp;diff=2226&amp;oldid=prev</id>
		<title>1&gt;Marycooch: n</title>
		<link rel="alternate" type="text/html" href="http://wiki.mipt.ru/index.php?title=CAS_server_(SSO)_authentication&amp;diff=2226&amp;oldid=prev"/>
		<updated>2016-05-03T10:34:16Z</updated>

		<summary type="html">&lt;p&gt;n&lt;/p&gt;
&lt;p&gt;&lt;b&gt;Новая страница&lt;/b&gt;&lt;/p&gt;&lt;div&gt;{{Authentication}}&lt;br /&gt;
The [https://en.wikipedia.org/wiki/Central_Authentication_Service Central Authentication Service] (CAS) is a single sign-on protocol for the web.&lt;br /&gt;
&lt;br /&gt;
CAS is very beneficial in environments where a number of different web applications share a set of common users.  If all the web applications were &amp;lt;em&amp;gt;&amp;quot;CASified&amp;quot;&amp;lt;/em&amp;gt; a user would log in once and would then be able to move between the various web applications without ever having to present authentication credentials again.  CAS is similar to the [[Shibboleth]] authentication mechanism, but it is vastly simpler to set up and lacks a number of broader features like federated trust and authorization infrastructure.&lt;br /&gt;
&lt;br /&gt;
CAS essentially works by configuring a Moodle site to not do authentication itself, but to instead forward unauthenticated users to a CAS server which will then return an authentication token to the Moodle site.  Moodle can extract the username from the token and then use its internal authorization mechanisms (roles, enrollments, capabilities) and user attributes (name, picture, etc.).  The advantage is that the Moodle site never has to handle passwords and that users, once they&amp;#039;ve authenticated the first time, can move seamlessly to another web application without having to present their credentials again.&lt;br /&gt;
&lt;br /&gt;
==Enabling CAS server authentication==&lt;br /&gt;
&lt;br /&gt;
An administrator can enable CAS server authentication as follows:&lt;br /&gt;
&lt;br /&gt;
# Go to &amp;#039;&amp;#039;Site administration &amp;gt; Plugins &amp;gt; Authentication &amp;gt; Manage authentication&amp;#039;&amp;#039; and click the eye icon opposite CAS server (SSO). When enabled, it will no longer be greyed out.&lt;br /&gt;
# Click the settings link, configure as required, then click the &amp;#039;Save changes&amp;#039; button.&lt;br /&gt;
&lt;br /&gt;
One caveat for those converting from LDAP or other authentication mechanisms:&lt;br /&gt;
&lt;br /&gt;
For any user that you wish to authenticate with CAS but which already has been using Moodle, and thus has an entry in the Moodle database, you will need to change the value of the &amp;quot;auth&amp;quot; field for the user in the mdl_user table.  So, if they used LDAP before, but now you wish for them to use CAS and their username is &amp;quot;foobar&amp;quot; you&amp;#039;ll need to edit the database with some SQL something like: &amp;lt;code&amp;gt;UPDATE mdl_user SET auth=&amp;#039;cas&amp;#039; where auth=&amp;#039;ldap&amp;#039; and username=&amp;#039;foobar&amp;#039;;&amp;lt;/code&amp;gt;  Without this change the user will constantly be presented with a failed login message, but otherwise no clue as to why login failed even though their credentials were accepted by the CAS server.&lt;br /&gt;
&lt;br /&gt;
==Enabling CAS accounts syncronisation==&lt;br /&gt;
&lt;br /&gt;
The CAS users sync job (&amp;#039;&amp;#039;\auth_cas\task\sync_task&amp;#039;&amp;#039;) [[Scheduled tasks|scheduled task]] (new in Moodle 3.0; previously there was a CLI script)  is responsible for creating and updating user information, and suspending and deleting CAS accounts. &lt;br /&gt;
&lt;br /&gt;
After enabling CAS server authentication, an administrator need to enable and configure the CAS users sync job as follows:&lt;br /&gt;
&lt;br /&gt;
# Go to &amp;#039;&amp;#039;Site administration &amp;gt; Server &amp;gt; Scheduled tasks&amp;#039;&amp;#039; and click the gear icon opposite CAS users sync job.&lt;br /&gt;
# Select the desired frequency of running and enable the task by un-ticking the disabled checkbox.&lt;br /&gt;
{{warning|It is important to make sure that all CAS settings are working properly before enabling the CAS users sync job (as well as backing up your database and moodledata folders), since incorrect CAS configuration can result in users being wrongly deleted!}}&lt;br /&gt;
&lt;br /&gt;
==Any questions?==&lt;br /&gt;
&lt;br /&gt;
Please post in the [http://moodle.org/mod/forum/view.php?id=42 Authentication forum] on moodle.org&lt;br /&gt;
&lt;br /&gt;
[[fr:Utiliser un serveur CAS (SSO)]]&lt;br /&gt;
[[de:CAS-Server]]&lt;br /&gt;
[[es:Autenticación por servidor CAS (SSO)]]&lt;/div&gt;</summary>
		<author><name>1&gt;Marycooch</name></author>
	</entry>
</feed>