CAS application codes at IU

IU Login (formerly CAS) uses unique application codes (also known as service codes) unique to the CAS protocol to let you control which types of users are able to authenticate to your IU website. Different application codes permit different types of users to authenticate using different authentication methods. For instance, an application code that accepts only IU Guest account credentials will not authenticate a user unless that person logs in with a valid IU Guest account username and passphrase. Similarly, an application code that requires Two-Step Login (Duo) will not authenticate a user unless that person person completes a Two-Step Login with an enrolled Duo device.

The following application codes are available for integration with IU websites (code names are case-sensitive):

Application code Description
IU Requires all users to authenticate with IU Network ID credentials. (Two-Step Login may also be required based on university affiliation, but this affiliation should not be relied upon to enforce Two-Step Login; see MFA application code.)
MFA Requires all users to authenticate with IU Network ID credentials and Two-Step Login (Duo)
GUEST Requires all users to authenticate with IU Guest account credentials
ANY Allows users to authenticate using any of the above methods
Note:
These application codes are extensions of IU's implementation; they are not part of the standard CAS protocol. Consequently, most third-party CAS applications do not support these application codes.

To stay informed or provide feedback about IU Login (formerly CAS), or to ask questions about developing with it, use the cas-discuss-l mailing list. To subscribe, send email to cas-discuss-l-subscribe@iu.edu.

This is document alqm in the Knowledge Base.
Last modified on 2019-07-02 11:05:36.

Contact us

For help or to comment, email the UITS Support Center.