newbie question.
PARDEE, MARTIN (MARTIN)
mlp at research.att.com
Mon May 7 16:12:05 BST 2012
Folks:
I have a demonstration setup of shibboleth working in my environment, a CentOS server used as the IdP, and a Windows7 box with IIS7 set up as an SP.
I have configured the IdP to authenticate users against a local LDAP server. All of this works so far.
I would like to extend this setup so that my IdP uses an external authentication service instead of LDAP. I have a "real" authentication service , but rather than go for the highest level of complexity at first, I'd just like to have my external auth service do something like look up the Userid in a flat file, and return an Authenticated/Not Authenticated indication based on that lookup.
My problem is that I know how long it took me to understand the basic Shibboleth 2 setup and configuration, and based on that experience I think it will take me FOREVER to extend the authentication functionality.
Can someone point me to a simple example of this kind of customization, or, could someone suggest an article, blog, or web page that would help me understand the overall mechanics of this problem? I have read about Login Handlers, IdPAuthExternal, etc. but so far the big picture of what I am doing here has not yet come into focus.
Thanks,
Martin pardee
mlp at research.att.com<mailto:mlp at research.att.com>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20120507/0e3e20ee/attachment.html
More information about the users
mailing list