Using Different SecurityPolicy for different SP's?

Cantor, Scott cantor.2 at osu.edu
Tue Dec 18 10:36:06 EST 2012


On 12/18/12 10:24 AM, "Zmuda, Matthew R" <Matthew.R.Zmuda at td.com> wrote:

>Thinking about this a little more and what my options might be.. what if
>I write a custom Security Rule for the existing Security Policy which has
>some logic to check the request and only require the request to be signed
>on non unsolicited SSO requests. That should allow me to use Unsolicited
>SSO without impacting existing RP config so they would still have send
>signed requests.
>
>Thoughts on that?

I don't think you have any way to tell that, and regardless you don't have
to. As I said, I was wrong, and you can create a dedicated RelyingParty,
add the profile handler to that only, and create a custom policy and
reference it from there.

-- Scott




More information about the users mailing list