Adding SAML2 ACS points does not seem to map attributes from SAML2 IDP
Jayashree Ravi
jravi123 at hotmail.com
Mon Oct 8 17:24:59 EDT 2012
Thanks Nate, Kevin
Scott could you elaborate more on how to get rid of the warnings? What do you mean by "settings that can be tightened" ?
Can you point me to a wiki page if any?
ThanksJayashree
> From: cantor.2 at osu.edu
> To: users at shibboleth.net
> Subject: Re: Adding SAML2 ACS points does not seem to map attributes from SAML2 IDP
> Date: Mon, 8 Oct 2012 18:26:09 +0000
>
> On 10/8/12 1:54 PM, "Jayashree Ravi" <jravi123 at hotmail.com> wrote:
>
> >Thanks Scott, We fixed the attribute-map and then we started getting the
> >values. However our operations team has the following to say about SSL:
> >
> >"As a standard for all encrypted web connections SSL certificates are
> >terminated at the F5 load balancer, which make cert management easier for
> >large environments. Please check with Shibboleth developers/support if
> >its possible to patch shibboleth to allow for such a setup to work, this
> >will allow for us to continue to terminate certs on the F5, or is this
> >not an option."
>
> The others answered, but I will reiterate: that has *nothing* to do with
> those warnings. They mean you have settings that can be tightened and that
> has nothing to do with whether you terminate SSL at the load balancer or
> not.
>
> The determinant is what the client sees, that's all.
>
> -- Scott
>
>
> --
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20121008/69ce1592/attachment-0001.html
More information about the users
mailing list