# DocumentRoot), not full file pathnames. For the default configuration to
# work properly, they require an Apache Alias directive to be configured to map
# "/handlers" to "${Conf::DACS_HOME}/www/handlers".
-ACS_ERROR_HANDLER "* /handlers/acs_failed.html"
+ACS_ERROR_HANDLER "* https://${Conf::JURISDICTION_AUTHSERVER}/public/index.cgi"
# Default authentication and signout handlers
# Since these are relative URLs, the Alias directive must be used as
# Note that the syntaxes of these directives are different from that of
# ACS_ERROR_HANDLER.
#AUTH_SUCCESS_HANDLER "url /handlers/auth_ok.html"
-AUTH_SUCCESS_HANDLER "url /public/index.cgi"
-AUTH_ERROR_HANDLER "* url /public/error.html"
-SIGNOUT_HANDLER "url /public/index.cgi"
+AUTH_SUCCESS_HANDLER "https://${Conf::JURISDICTION_AUTHSERVER}/public/index.cgi"
+AUTH_ERROR_HANDLER "* https://${Conf::JURISDICTION_AUTHSERVER}/public/error.html"
+SIGNOUT_HANDLER "https://${Conf::JURISDICTION_AUTHSERVER}/public/index.cgi"
# These handlers can only be URLs (absolute or relative)
NOTICES_ACCEPT_HANDLER "/handlers/notices_accepted.html"
exec {
"dacsacl":
- command => "dacsacl -uj DEBIAN",
+ command => "dacsacl -sc /etc/dacs/federations/site.conf -c /etc/dacs/federations/debian.org/DEBIAN/dacs.conf -uj DEBIAN && chown root:www-data /etc/dacs/federations/debian.org/DEBIAN/acls/INDEX"
refreshonly => true,
}