eduPersonTargetedID
Qian, Yi
yqian at ku.edu
Fri Apr 26 14:58:54 EDT 2013
Thanks Etan
changed to Script got rid of the error
Thanks Scott
for clearing it, since we are release this to every SP, the Manager
thinking about the security issues, only uid is encoded, he likes to
include sp entity id so the eduPersonTargetedID will be truly unique
On 4/26/13 1:28 PM, "Cantor, Scott" <cantor.2 at osu.edu> wrote:
>On 4/26/13 2:08 PM, "Qian, Yi" <yqian at ku.edu> wrote:
>>
>>Our eduPersonTargetedID just follows shibboleth wiki, including 2 parts
>>idp entity id, sp entity id and encoded uid, separated by !
>
>You are mistaken. That is an SP construct, it has nothing to do with your
>IdP or what it sends. You're sending a NameID element. It's XML, not a
>string.
>
>>
>>Manager wants the last part to be encoded idp entity id + sp entity id +
>>uid. I tried to use script attribute definition. But got "Invalid content
>>was found starting with element 'Script'. One of
>>'{"urn:mace:shibboleth:2.0:resolver":AttributeEncoder}' is expected."
>>error
>
>Do NOT do this. The choice of how the value looks at the application end
>is up to the SP and is configured there.
>
>-- Scott
>
>
>--
>To unsubscribe from this list send an email to
>users-unsubscribe at shibboleth.net
>
More information about the users
mailing list