How Shib IdP verify the metadata from SP
Yaowen Tu
yaowen.tu at gmail.com
Mon Jul 30 13:29:10 EDT 2012
We are trying to use Shib IdP in our product. Before that we want to have a
better understanding of how it works.
One question we have is how IdP verifies the metadata? For example, when we
are trying to establish a trust relationship with verious SPs what we need
to check? and when an AuthnRequest coming, how to we know if the request
comes from a trusted SP?
Can anybody also point out where is the code that handle this?
I have sync-ed all the IdP source code, but it seems not very easy to find
it out without understanding the whole thing.
Another question is apart from this:
https://wiki.shibboleth.net/confluence/display/SHIB2/IdPHLA, is there any
other resources to describe the overall design or architecture?
Your input is highly appreciated.
Best,
Yaowen
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/dev/attachments/20120730/4609fdf6/attachment.html
More information about the dev
mailing list