Single Sign On

I just enabled single sign on at neonDragon.net. This means when you are logged in here at Cow’s Blog, your automatically logged in at neonDragon.net and the Evolution Portal. This was done by changing two configuration settings:

  1. Setting the cookie domain to .neondragon.net so cookies set to the whole domain.
  2. Setting a configuration option so www and evolution also read from the cow session table. The same technique is used to share users, settings, etc.

Hopefully we’ll be able to extend this to a few more parts of the network soon.

3 thoughts on “Single Sign On

  1. Of course, when I work out the best way to do it without having the password has a cookie and making it easier to attack via XSS stolen cookies. Thanks for the reminder

Leave a Reply

Your email address will not be published. Required fields are marked *

*

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>