Download the PHP package insol-dev/central-authentication-server without Composer
On this page you can find all versions of the php package insol-dev/central-authentication-server. It is possible to download/install these versions without Composer. Possible dependencies are resolved automatically.
Download insol-dev/central-authentication-server
More information about insol-dev/central-authentication-server
Files in insol-dev/central-authentication-server
Package central-authentication-server
Short Description Laravel client package for CAS (Central Authentication Server) — SSO integration with JWT tokens, HMAC signature validation, and role-based access control.
License MIT
Homepage https://github.com/insol-dev/central-authentication-server
Informations about the package central-authentication-server
Laravel CAS Client Package
A Laravel package for seamless integration with Central Authentication Service (CAS) servers. This package provides secure single sign-on authentication with JWT tokens, signature validation, and role-based access control.
Features
- 🔐 Secure SSO Authentication - JWT token-based authentication
- 🛡️ Signature Validation - HMAC SHA-256 request signing
- 👥 Role-Based Access Control - Middleware for role protection
- 🔧 Easy Configuration - Environment-based setup
- 📝 Comprehensive Logging - Authentication event tracking
- ⚡ Performance Optimized - Token caching and validation
- 🎯 Laravel Integration - Native Laravel guards and middleware
Installation
1. Install via Composer
2. Publish Configuration
3. Configure Environment Variables
Add the following to your .env file:
Quick Start
1. Protect Routes with Middleware
2. Manual Authentication
3. Access User Data
4. Blade Templates
Configuration
Environment Variables
Advanced Configuration
Edit config/cas-client.php for advanced options:
Middleware
CasAuthentication Middleware
Protects routes requiring CAS authentication:
CasRole Middleware
Protects routes requiring specific roles:
API Reference
CasAuthService Methods
User Data Structure
Security Features
Signature Validation
When enabled, all requests to the CAS server are signed with HMAC SHA-256:
The payload includes:
- HTTP method
- Request URI
- Request body
- Timestamp
- Client ID
Token Caching
User data is cached to reduce CAS server load:
Error Handling
Comprehensive error handling for all CAS operations:
Troubleshooting
Common Issues
-
Authentication Loop
- Check
CAS_CALLBACK_URLmatches your route - Verify session configuration
- Ensure middleware order is correct
- Check
-
Token Validation Fails
- Verify client credentials in CAS server
- Check
CAS_SIGNATURE_SECRETif using signatures - Ensure CAS server is accessible
- Role Access Denied
- Verify user has required roles in CAS
- Check role middleware configuration
- Ensure roles are properly synced
Debug Mode
Enable debug logging:
Testing
Test your configuration:
License
This package is open-sourced software licensed under the MIT license.
Support
For support, visit innovativesolution.com.np or create an issue on GitHub.
Contributing
Please see CONTRIBUTING.md for details on how to contribute to this package.
Changelog
Please see CHANGELOG.md for details on recent changes.
All versions of central-authentication-server with dependencies
laravel/framework Version ^7.0|^8.0|^9.0|^10.0|^11.0|^12.0
firebase/php-jwt Version ^5.0|^6.0
guzzlehttp/guzzle Version ^6.3|^7.0