Salesforce with Shibboleth IdP

Smith, Martin B. smithmb at ufl.edu
Mon Jun 11 20:13:47 BST 2012


FWIW, their documentation states:

"Your identity provider should send SAML assertions to Salesforce using the SAML Web Single Sign-on Browser POST profile."

I'm not sure they support anything else @ Salesforce. My assumption is that if they couldn't bother to implement the required code for encryption and they've asked for Browser POST, they probably didn't implement other profiles either :).

Cheers all,
--
Martin B. Smith
smithmb at ufl.edu - (352) 273-1374
CNS/Open Systems Group
University of Florida


________________________________________
From: users-bounces at shibboleth.net [users-bounces at shibboleth.net] on behalf of Peter Schober [peter.schober at univie.ac.at]
Sent: Monday, June 11, 2012 2:54 PM
To: users at shibboleth.net
Subject: Re: Salesforce with Shibboleth IdP

* Curry, Warren <whcurry at ufl.edu> [2012-06-11 20:46]:
> We have 550 SP doing it  one who is not wanting to..  We will most
> likely hold the line on our requirement

As Chad already mentioned, you could (should?) switch to attribute
queries then (i.e., stop pushing unencrypted data over the
browser for this RP) and be at peace wrt confidentiality.
*If* they support at least that, which you can quickly find out ;)
-peter
--
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net


More information about the users mailing list