Remove Terracotta Cluster
Joshua Brodie
josbrodie at gmail.com
Tue May 29 21:32:24 BST 2012
Hi:
Thank you for all your helpful feedback.
Yes, we have a load balancer sitting in-front which off-loads the SSL,
and DNS entry point, for all the IdP nodes.
We currently do not allow any any attribute queries via back-channels
- at the moment, I do not see a business case whereby we could offer
back-channel queries; i.e.
- WAYF has been discontinued in favour of EDS
- No SAML 1.x integrations
- No ECP
- No SLO
I hope I am not missing anything but hopefully without the cluster,
there will not be any impact.
On 29 May 2012 10:43, Peter Schober <peter.schober at univie.ac.at> wrote:
> * Joshua Brodie <josbrodie at gmail.com> [2012-05-29 17:56]:
>> How will it functionally impact if only SAML2 is used without any
>> back-channel attribute query?
>
> With a loadbalancer of some sorts implementing stickyness ("session
> affility", usually requires terminating SSL on the loadbalancer to
> work reliably) you're fine if you're not making use of the Artifact
> profile for WebSSO since this always requires state at the IdP.
> -peter
> --
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
More information about the users
mailing list