Thank you for your answer.
The fact is we’re presently only using the official LDAP authentication App to authenticate our users against an Active Directory and to retrieve Group Information for the authenticated users that we use for sharing (Group Folder App for example) and rights management.
What we would like to implement now is to authenticate users against our CAS server. From the CAS server we get the user ID, which is handled to Nextcloud through $_SERVER[‘REMOTE_USER’] environment variable. We would like then to retrieve Group Information for that user through querying our LDAP (Active Directory) server.
To sum up :
1- User types Nextcloud URL in browser
2- User is redirected to CAS server
3- User authenticates in CAS server and is redirected to Nextcloud
4- Nextcloud gets user uid from $_SERVER[‘REMOTE_USER’] variable
5- Nextcloud queries our LDAP server and retrieves group information for that user
We already have many other client/server applications that use this double step scheme.
I thought I could use the SSO-SAML App for authentication and the LDAP App for group retrieval. Is there a way I can configure these Apps so that they work together ?