Unsolicited SSO with shibboleth IDP implementation

Cantor, Scott cantor.2 at osu.edu
Fri May 5 16:35:11 EDT 2017


On 5/5/17, 4:01 PM, "dev on behalf of horst" <dev-bounces at shibboleth.net on behalf of mrboard at gmx.de> wrote:

> I’m planning to add to an existing web app (that already has an
> authentication processes) a SAML IDP function that supports IDP
> initiated/unsolicited SSO and sends a SAML assertion to an Service Provider

Please don't. Just use an existing IdP implementation and integrate the use of it with your application in some way. For example, take a Shibboleth IdP and protect its authentication step with your existing application through some custom mechanism.

-- Scott




More information about the dev mailing list