still a few issues with login script to shibboleth identity server

Paul Hethmon paul.hethmon at clareitysecurity.com
Tue Oct 9 14:36:32 EDT 2012


Not without implementing a SAML Service Provider. Read the spec.

On 10/9/12 2:32 PM, "Joseph Norris" <jozefn at sonic.net> wrote:

>hehe - now this newbie is even more confused.  Are you saying that I can
>not send an xml request with proper attributes to an identity server and
>be redirected to a the sign-in page - have my user/pass verified by
>identity server and return a status of ok to the calling script?
>
>On 10/09/2012 10:08 AM, Peter Schober wrote:
>> * Cantor, Scott <cantor.2 at osu.edu> [2012-10-09 19:04]:
>>> On 10/9/12 12:46 PM, "Peter Schober" <peter.schober at univie.ac.at>
>>>wrote:
>>>
>>>> * Joseph Norris <jozefn at sonic.net> [2012-10-09 17:36]:
>>>>> The company I am working for has decided to not run an SP - the just
>>>>> need their product to allow single signon for the company that is
>>>>> running an SP.
>>>> This means is that you're implementing a SAML IdP yourself. In Perl.
>>>> The Shibboleth software (and mailing list) can't help you here since
>>>> you don't intend to use it.
>>> I confess that I'm not clear whether there's an SP or an IdP being
>>> implemented here, which just speaks to the general confusion about the
>>>use
>>> case.
>> Right. I even wrote "SP" intially, then re-read and changed to "IdP".
>> Whatever ;)
>> -peter
>> --
>> To unsubscribe from this list send an email to
>>users-unsubscribe at shibboleth.net
>>
>>
>
>-- 
>#Joseph Norris (Linux/Apache/Mysql/Perl - what else is there?)
>print @c=map chr $_+100,(6,17,15,16,-68,-3,10,11,
>16,4,1, 14,-68,12,1,14,8, -68,4,-3,-1,7,1,14,-68,
>-26,11,15,1,12, 4,-68,-22,11,14,14,5,15,-90);
>
>--
>To unsubscribe from this list send an email to
>users-unsubscribe at shibboleth.net



More information about the users mailing list