WS-Federation resource provider relationship with our IdP
Tom Scavo
trscavo at gmail.com
Fri Mar 28 14:43:11 EDT 2014
On Fri, Mar 28, 2014 at 2:26 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:
>
> You will likely have to create some dedicated attribute configuration to
> supply data to them in the way it prefers if you want to insulate them
> from having to make a lot of changes on their end, or you can stick to
> vanilla and force them to accomodate the standard attribute names and
> approaches Shibboleth follows. Much of the documentation from MS is around
> some of that, and the rest is primarily about metadata issues.
And speaking of metadata issues, AD FS has its share of those. It's
unlikely their AD FS SP will be able to directly consume any metadata
file you provide (maybe FEMMA will work, I don't know), which means
you're trapped when it comes time to migrate a certificate in IdP
metadata, or something along those lines.
Tom
More information about the dev
mailing list