Adding SAML2 ACS points does not seem to map attributes from SAML2 IDP

Cantor, Scott cantor.2 at osu.edu
Mon Oct 8 14:26:09 EDT 2012


On 10/8/12 1:54 PM, "Jayashree Ravi" <jravi123 at hotmail.com> wrote:

>Thanks Scott,  We fixed the attribute-map and then we started getting the
>values.  However our operations team has the following to say  about SSL:
> 
>"As a standard for all encrypted web connections SSL certificates are
>terminated at the F5 load balancer, which make cert management easier for
>large environments. Please check with Shibboleth developers/support if
>its possible to patch shibboleth to allow for such a setup to work, this
>will allow for us to continue to terminate certs on the F5, or is this
>not an option."

The others answered, but I will reiterate: that has *nothing* to do with
those warnings. They mean you have settings that can be tightened and that
has nothing to do with whether you terminate SSL at the load balancer or
not.

The determinant is what the client sees, that's all.

-- Scott




More information about the users mailing list