Switching the user in the same SSO session

David Bantz dabantz at alaska.edu
Thu Aug 15 14:42:49 EDT 2013


A simple 'low-tech' solution is to open another session in another browser or use incognito windows within the same browser.

David Bantz

On Thu, 15 Aug 2013, at 07:33 , "Cantor, Scott" <cantor.2 at osu.edu> wrote:

> On 8/15/13 11:21 AM, "Douglas E. Engert" <deengert at anl.gov> wrote:
>> 
>> Could you have the SP force re-authentication for the transaction?
>> 
>> https://wiki.cac.washington.edu/display/infra/Configure+a+Service+Provider
>> +to+Force+Re-Authentication
> 
> Doesn't change this, there's still only one session including both
> identities. The current code made the decision to deal with disparate
> technologies involved in a login by assuming no identity switching is
> allowed (but compounds that problem by not allowing it to error out).
> 
> If you don't want that behavior, you have to turn off the existing session
> mechanism and substitute a different one.
> 
> -- Scott
> 
> 
> --
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 163 bytes
Desc: Message signed with OpenPGP using GPGMail
Url : http://shibboleth.net/pipermail/users/attachments/20130815/5f5c4043/attachment.bin 


More information about the users mailing list