How Shib IdP verify the metadata from SP

Yaowen Tu yaowen.tu at gmail.com
Mon Jul 30 13:29:10 EDT 2012


We are trying to use Shib IdP in our product. Before that we want to have a
better understanding of how it works.

One question we have is how IdP verifies the metadata? For example, when we
are trying to establish a trust relationship with verious SPs what we need
to check? and when an AuthnRequest coming, how to we know if the request
comes from a trusted SP?

Can anybody also point out where is the code that handle this?

I have sync-ed all the IdP source code, but it seems not very easy to find
it out without understanding the whole thing.

Another question is apart from this:
https://wiki.shibboleth.net/confluence/display/SHIB2/IdPHLA, is there any
other resources to describe the overall design or architecture?

Your input is highly appreciated.


Best,
Yaowen
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/dev/attachments/20120730/4609fdf6/attachment.html 


More information about the dev mailing list