federated auth with Microsoft Office 365

Cantor, Scott cantor.2 at osu.edu
Fri Aug 17 20:40:09 EDT 2012

On 8/16/12 11:45 PM, "Paul B. Henson" <henson at csupomona.edu> wrote:
>According to their docs, with ECP configured on the shibboleth side they
>support Outlook 2007, Outlook 2010, Thunderbird 8 and 9, iPhone, and
>Windows Phone 7. That's still a pretty narrow set of clients, which
>doesn't include mine (mutt) :(.

Assuming mutt supports simple authentication for IMAP or whatever, I don't
think they can really "not" support it in a technical sense.

>It looks like ECP is enabled in the default config for the newer IdP
>releases? I don't have it enabled, but that's probably more because I
>didn't bother to update my existing config with it than an intentional
>decision not to support it :). Looks like most people are in the same
>boat, only 5 Idp's in the incommon metadata seem to support ECP. Is
>there any reason not to enable it, other, I suppose, than the need to
>have a separate authentication mechanism configured for it?

That depends on your perspective on non-web authentication UI, phishing,
and such. Some sites have reservations about exposing a basic-auth
interface to their authentication system.

-- Scott

More information about the users mailing list