Salesforce with Shibboleth IdP
Smith, Martin B.
smithmb at ufl.edu
Mon Jun 11 20:13:47 BST 2012
FWIW, their documentation states:
"Your identity provider should send SAML assertions to Salesforce using the SAML Web Single Sign-on Browser POST profile."
I'm not sure they support anything else @ Salesforce. My assumption is that if they couldn't bother to implement the required code for encryption and they've asked for Browser POST, they probably didn't implement other profiles either :).
Cheers all,
--
Martin B. Smith
smithmb at ufl.edu - (352) 273-1374
CNS/Open Systems Group
University of Florida
________________________________________
From: users-bounces at shibboleth.net [users-bounces at shibboleth.net] on behalf of Peter Schober [peter.schober at univie.ac.at]
Sent: Monday, June 11, 2012 2:54 PM
To: users at shibboleth.net
Subject: Re: Salesforce with Shibboleth IdP
* Curry, Warren <whcurry at ufl.edu> [2012-06-11 20:46]:
> We have 550 SP doing it one who is not wanting to.. We will most
> likely hold the line on our requirement
As Chad already mentioned, you could (should?) switch to attribute
queries then (i.e., stop pushing unencrypted data over the
browser for this RP) and be at peace wrt confidentiality.
*If* they support at least that, which you can quickly find out ;)
-peter
--
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
More information about the users
mailing list