Configuring IdP v.2.3.8 with Silver assurance

Cantor, Scott cantor.2 at osu.edu
Wed Sep 26 16:41:22 EDT 2012


On 9/26/12 4:31 PM, "Tom Scavo" <trscavo at gmail.com> wrote:
>
>In practice this would be useful if ALL users and ALL authentications
>in the IdP's security domain are equivalent. That probably won't turn
>out to be the case very often but who knows. If the assumption is
>true, however, why not just return silver in ALL cases (or I should
>say, in both cases: silver and unspecified)?

That's just a PoC. You can always tie the different handlers to two
different JAAS config keys doing different things.

What you can't do with that alone is differentiate based on the individual
user via attributes or things like that.

-- Scott




More information about the users mailing list