MPASSid-proxy OAuth (Facebook) and OIDC (Google) IdP AuthN Integration

Philip Smart Philip.Smart at jisc.ac.uk
Tue Nov 27 09:30:04 EST 2018



> On 27 Nov 2018, at 14:27, Cantor, Scott <cantor.2 at osu.edu> wrote:
> 
> On 11/27/18, 4:56 AM, "dev on behalf of Philip Smart" <dev-bounces at shibboleth.net on behalf of Philip.Smart at jisc.ac.uk> wrote:
> 
>> Yes, I can see you have a valid use case without requiring the session layer, that makes sense. I was just looking at it
>> from the perspective of a more standard Shib AuthN implementation - which as you say, was not its exact purpose. 
> 
> There are some good reasons for proxying without sessions in the IdP (clarity around timeouts and such is a big one), I would generally say that the only great reason to ever not do it that way would be logout.

Makes sense, thanks.

Phil

> 
> 
> -- 
> To unsubscribe from this list send an email to dev-unsubscribe at shibboleth.net
> 

Jisc is a registered charity (number 1149740) and a company limited by guarantee which is registered in England under Company No. 5747339, VAT No. GB 197 0632 86. Jisc’s registered office is: One Castlepark, Tower Hill, Bristol, BS2 0JA. T 0203 697 5800.

Jisc Services Limited is a wholly owned Jisc subsidiary and a company limited by guarantee which is registered in England under company number 2881024, VAT number GB 197 0632 86. The registered office is: One Castle Park, Tower Hill, Bristol BS2 0JA. T 0203 697 5800.  



More information about the dev mailing list