[Building Sakai] Sakai 2011 - Google Integration: Slides Posted

Bryan Holladay holladay at longsight.com
Mon Aug 1 12:53:26 PDT 2011


Duffy,

Thanks for the reply... This was my original thought when I first saw this
behavior, so I signed out of google, tried different browsers, and even had
someone else get on their computer and sign in.  In all cases, they all had
access to my personal Gmail documents that was used to verify the server
(oauth shared secret).

I compiled trunk for

https://source.sakaiproject.org/contrib//rsmart/oauth/trunk
https://source.sakaiproject.org/contrib//rsmart/rsmart-common/trunk/
https://source.sakaiproject.org/contrib//rsmart/google-content/trunk/


Thanks,
Bryan

On Mon, Aug 1, 2011 at 3:45 PM, Duffy Gillman <duffy at rsmart.com> wrote:

> Hi Bryan -
>
>   I believe the problem you are having stems from the fact that you are
> dealing with two sessions from two distinct services: Sakai and Google. This
> can cause some counterintuitive behavior. If you are logged in over at
> Google as test1 at test.com Google will continue to see you as test1 at test.comuntil you log out *with Google*. In the meantime you may log in and out of
> Sakai as any number of users. This will have no impact on the Google side.
> Google will continue to see you as test1 at test.com until you invalidate
> your session with their servers either by clicking Google's logout link, by
> clicking Google's "login as a different user" link, or by the expiration of
> your session with Google.
>
>   So in your instance you are seeing behavior that would be unexpected or
> unlikely*  with end users. It is a function of your tests in which, unlike
> end users, you have multiple Sakai logins that you switch between. The
> typical end user will either already be logged in with Google (say, because
> they are using their Gmail account) and will see their account when they try
> to use Google Docs, or they will be asked to log in with their account the
> first time they try to create a Google Docs link.
>
>   Please let me know if this explains the behavior you are seeing. Try
> logging out of Google when you log out of Sakai to verify the behavior and
> please let me know if I've adequately explained how what you have observed
> is happening.
>
> Cheers,
>
>   Duffy Gillman
>   Sr. Software Engineer
>   The rSmart Group, Inc.
>
> * I say "unlikely" because there is one scenario in which I can envision an
> end user running into what you have observed. It is possible that a user on
> a public terminal could leave their machine login session open and could
> forget to logout of Google. This would of course be a huge risk to the
> user's account security even beyond the ability to create links in Sakai,
> and is unfortunately a scenario the Sakai/Google Docs integration cannot
> guard against since we can have no control over the other systems the user
> has logged into.
>
>
>
> On Aug 1, 2011, at 12:21 PM, Bryan Holladay wrote:
>
> > Thanks for all the work on this... I have a question about the
> integration:
> >
> > I was able to get everything working and set up my server to authenticate
> w/my google account.  However, this account seems to be the only account
> that is used throughout Sakai.  i.e.  If a user (ex. Sakai id: test1 and
> googleId: test1 at test.com) logs in and goes to link a google doc in
> resources, the list of resources to choose from are the ones in my google
> account that was authorized to the Sakai server.  Did I miss a part in the
> setup to make sure each user only has access to their own google account
> docs?  Or does each institution have to just have a single account that is
> shared throughout all of sakai?
> >
> > Thanks,
> > Bryan
> >
> >
> > On Thu, Jul 28, 2011 at 1:53 PM, Duffy Gillman <duffy at rsmart.com> wrote:
> > Hey folks -
> >
> >  Keynote and Powerporint presentations for the Google Integration talks
> at the Sakai 2011 Conference have been posted at the following locations:
> >
> > 2011-06-16 Sakai CLE and Google Integration
> > https://confluence.sakaiproject.org/x/rI2CB
> >
> > 2011-06-16 Sharing Google Docs Content in Resources
> > https://confluence.sakaiproject.org/x/t42CB
> >
> > Sorry for the delay!
> >
> >    Duffy GIllman
> >
> > _______________________________________________
> > sakai-dev mailing list
> > sakai-dev at collab.sakaiproject.org
> > http://collab.sakaiproject.org/mailman/listinfo/sakai-dev
> >
> > TO UNSUBSCRIBE: send email to
> sakai-dev-unsubscribe at collab.sakaiproject.org with a subject of
> "unsubscribe"
> >
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://collab.sakaiproject.org/pipermail/sakai-dev/attachments/20110801/004c27c9/attachment.html 


More information about the sakai-dev mailing list