Shibboleth Service Provider Configuration for Single app for multiple sub domains with Different IDP's
Raz's
gajula.rajashekhar at gmail.com
Sat Oct 27 18:00:41 EDT 2012
Thanks a lot Scott.... [?]
What i understand from your suggession as follows,
When the user trying to access the secure folder/app (in my case
clientx.domainname.com/application) then it's has to redirect to the idp
login page here user needs to select their own idp from the list after
authentication process request will be redirected to original URL (
clientx.domainname.com/application) right. Now working like this for the
single client. But i want to use Single SP for my rest of the
clients. Please confirm me one thing, if i use applicationoverride in my
shibboleth then will it work perfectly?
- Raja Sekhar G.
On Sun, Oct 28, 2012 at 3:04 AM, Cantor, Scott <cantor.2 at osu.edu> wrote:
> On 10/27/12 5:27 PM, "Raz's" <gajula.rajashekhar at gmail.com> wrote:
> >
> >So can you suggest me other alternative(with any slightly modification
> >wrt you view) to fulfill my requirement.
>
> The best option is not to try and avoid discovery. That's a cost of
> supporting federation, and users should interact with the system to select
> their IdP.
>
> The second best option is to use path or query string information to
> trigger the IdP selection instead of the hostname, but route all traffic
> back through the same URLs and resources. If the system has to be
> compartmentalized by IdP, that should be done by the application itself
> based on the data that is available for the authenticated session.
>
> -- Scott
>
>
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20121028/91d7be6a/attachment-0001.html
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: image/gif
Size: 316 bytes
Desc: not available
Url : http://shibboleth.net/pipermail/users/attachments/20121028/91d7be6a/attachment-0001.gif
More information about the users
mailing list