GEANT OIDC plugin

Tom Scavo trscavo at gmail.com
Sat Sep 8 16:19:54 EDT 2018


On Fri, Sep 7, 2018 at 5:56 PM Jim Fox <fox at washington.edu> wrote:
>
> >
> > Suppose I log into a SAML SP and then later log into an OIDC RP, both
> > with your IdP. Is there single sign-on between the two protocols?
> >
>
> Yes, it runs through the Password flow.

Okay, great, so the protocols share the same session.

What about user identifiers? Does your IdP support a long-lived,
non-reassigned identifier for SAML? Were you able to re-use that
identifier for the OIDC 'sub' claim?

Thanks Jim.

Tom


More information about the dev mailing list