SSO Implementation
Raz's
gajula.rajashekhar at gmail.com
Tue Oct 30 14:09:44 EDT 2012
Hi Nate,
Actually i'm new to SAML implementation due to that i don't know how to
deploy the separate SAML SP's for each sub domain, if you don't mind can
you provide little bit more guide on that.
I forgot to mention one point here our platform is windows.
I'm totally confused with applicationoverride, please clarify my doubt
regarding this.
1) site name : shall i specify it as xxxx.com or sp.xxxx.com
2) if i specify site name as a sp.xxxx.com then is it necessary configure
sp.xxxx.com in application default section
3) is there any specific pattern for the host name to use them in the
applicationoverride?
4) please classify applicationdefault and applicationoverride based our
requirement
-Raja
On Tue, Oct 30, 2012 at 11:21 PM, Nate Klingenstein <ndk at internet2.edu>wrote:
> Raz,
>
> I think the easiest thing to do would be to just deploy separate SAML SP's
> for each sub domain. Is there a reason why you couldn't do that?
>
> Otherwise, a combination of appropriate session initiation and application
> overrides would allow a single SP to protect each subdomain in a distinct
> fashion.
>
>
> https://wiki.shibboleth.net/confluence/display/SHIB2/NativeSPApplicationOverride
> https://wiki.shibboleth.net/confluence/display/SHIB2/NativeSPServiceSSO
>
> Thanks,
> Nate.
>
> On 30 Oct 2012, at 17:45, "Raz's" <gajula.rajashekhar at gmail.com> wrote:
>
> > Hi All,
> >
> > Please help me out in the process of SAML SP implementation for sub
> domains. This implementation little bit tricky here single application
> providing the solutions or our clients using the sub domains so each sub
> domain indicates the individual client and also each client had the his own
> idp and sp but we want to integrate their idp into our sp at the same it
> has to redirect the request to respected sub domains (clients) idp. Here
> Session of each and every sub domain (client) should be vary based on the
> sub domain(client) idp.
> >
> > So kindly provide me some guide lines to implement this case study.
> >
> >
> > --
> > To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20121030/d66418e4/attachment.html
More information about the users
mailing list