Identity switch behavior
Christopher Bongaarts
cab at umn.edu
Mon Oct 14 13:27:51 EDT 2013
On 10/14/2013 12:17 PM, Cantor, Scott wrote:
> While I'm willing to build in some extensibility, above and beyond the
> basic ability with SWF to make it do really anything somebody wants, I'm
> not sure there's anything rational to do in general but purge the existing
> session and replace it with a new one.
That's the behavior that we used for our previous SSO system, and it
seems the most logical to me too.
Now we just have to figure out the behavior for identity routers (they
operate at NIST level 3, while identities switches operate at NIST level 2).
--
%% Christopher A. Bongaarts %% cab at umn.edu %%
%% OIT - Identity Management %% http://umn.edu/~cab %%
%% University of Minnesota %% +1 (612) 625-1809 %%
More information about the dev
mailing list