Adding SAML2 ACS points does not seem to map attributes from SAML2 IDP

Jayashree Ravi jravi123 at hotmail.com
Mon Oct 8 17:24:59 EDT 2012


Thanks Nate, Kevin
Scott  could you elaborate more on how to get rid of the warnings?  What do you mean by "settings that can be tightened" ?
Can you point me to a wiki page if any?
ThanksJayashree


> From: cantor.2 at osu.edu
> To: users at shibboleth.net
> Subject: Re: Adding SAML2 ACS points does not seem to map attributes from	SAML2 IDP
> Date: Mon, 8 Oct 2012 18:26:09 +0000
> 
> On 10/8/12 1:54 PM, "Jayashree Ravi" <jravi123 at hotmail.com> wrote:
> 
> >Thanks Scott,  We fixed the attribute-map and then we started getting the
> >values.  However our operations team has the following to say  about SSL:
> > 
> >"As a standard for all encrypted web connections SSL certificates are
> >terminated at the F5 load balancer, which make cert management easier for
> >large environments. Please check with Shibboleth developers/support if
> >its possible to patch shibboleth to allow for such a setup to work, this
> >will allow for us to continue to terminate certs on the F5, or is this
> >not an option."
> 
> The others answered, but I will reiterate: that has *nothing* to do with
> those warnings. They mean you have settings that can be tightened and that
> has nothing to do with whether you terminate SSL at the load balancer or
> not.
> 
> The determinant is what the client sees, that's all.
> 
> -- Scott
> 
> 
> --
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
 		 	   		  
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20121008/69ce1592/attachment-0001.html 


More information about the users mailing list