SSO Implementation

Nate Klingenstein ndk at internet2.edu
Tue Oct 30 13:51:36 EDT 2012


Raz,

I think the easiest thing to do would be to just deploy separate SAML SP's for each sub domain.  Is there a reason why you couldn't do that?

Otherwise, a combination of appropriate session initiation and application overrides would allow a single SP to protect each subdomain in a distinct fashion.

https://wiki.shibboleth.net/confluence/display/SHIB2/NativeSPApplicationOverride
https://wiki.shibboleth.net/confluence/display/SHIB2/NativeSPServiceSSO

Thanks,
Nate.

On 30 Oct 2012, at 17:45, "Raz's" <gajula.rajashekhar at gmail.com> wrote:

> Hi All,
> 
> Please help me out in the process of SAML SP implementation for sub domains. This implementation little bit tricky here single application providing the solutions or our clients using the sub domains so each sub domain indicates the individual client and also each client had the his own idp and sp but we want to integrate their idp into our sp at the same it has to redirect the request to respected sub domains (clients) idp. Here Session of each and every sub domain (client) should be vary based on the sub domain(client) idp.
> 
> So kindly provide me some guide lines to implement this case study.
> 
> 
> --
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net



More information about the users mailing list