Follow-up on question that I recently asked on the users list about name ID support in Shibboleth IdP
WULMS Alexander
Alexander.WULMS at swift.com
Thu Jan 12 11:59:22 GMT 2012
Hi,
Regarding my earlier request on the users list about NameID management in Shibboleth IdP 3.x:
We manage two different environments, each having its own user database. In one environment, users have to authenticate based on a PKI setup, with a certificate. In the other environment, users have to authenticate with a username/password. Some people have an account in both environments. In order to make life easier for them, we want to set-up SAML based SSO between the two environments. In order for this to work, the users with an account in both environments must be able to link the two accounts. If possible, we would prefer to link the accounts using the SAML Name Identifier Mapping protocol. Furthermore, we would also like to give the users the possibility to unlink the accounts again, preferably using the SAML Name Identifier Management Protocol.
I hope this clarifies our use case for support of the NameID management related protocols.
Thanks and kind regards,
Alex
Alex Wulms
Lead Developer, Swift.com development
Tel: + 32 2 655 3931
S.W.I.F.T. SCRL
This e-mail and any attachments thereto may contain information which is confidential and/or proprietary and intended for the sole use of the recipient(s) named above. If you have received this e-mail in error, please immediately notify the sender and delete the mail. Thank you for your co-operation. SWIFT reserves the right to retain e-mail messages on its systems and, under circumstances permitted by applicable law, to monitor and intercept e-mail messages to and from its systems.
Please visit http://www.swift.com<http://www.swift.com/> for more information about SWIFT.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/dev/attachments/20120112/667a5f36/attachment.html
More information about the dev
mailing list