Pro & Cons of Shibboleth Authentication for Office 365

solution79 solution79 at live.com
Mon Jun 3 03:20:01 EDT 2013


Hello Mauro,

 

First of all thanks for sharing the federation videos, few queries that
needs your response - 

 

a) Shibboleth is the front end for authentication however it uses Active
Directory from LDAP perspective?

 

b) Shibboleth.ps1 script file which is been used in Federation video no.5,
can you share the same?

 

c) Once federated to Shibboleth, is it that all trusted domains running on
Office 365 will get authenticated through Shibboleth?

 

d) If yes in Point C, than we are looking for an alternate.

As we have different UPN for users, such that we wants users with UPN -
@abc.edu.au to be get authenticated by Shibboleth. But UPN  -
@alumni.abc.edu.au to be authenticated by Office 365 Identity management. Is
this possible?

 

Regards,

 

Dematri

 

 

From: users-bounces at shibboleth.net [mailto:users-bounces at shibboleth.net] On
Behalf Of Mauro Minella
Sent: Friday, May 24, 2013 6:05 PM
To: Shib Users
Subject: RE: Pro & Cons of Shibboleth Authentication for Office 365

 

ADFS typically relies on AD, and if you have AD you may use DirSync, which
makes provisioning much easier.

Shibboleth may rely on AD as well, but in this case I see no reasons to use
Shibboleth rather than ADFS, which gets better support (free for
schools/universities), is easier to setup, and fully supports Lync clients
which is currently are supported by Shibboleth.

Shibboleth is actually more challenging to configure, but it works well for
passive authentication (OWA/SharePoint) and active clients (Outlook
2007/2010/2013) via ECP, and IMAPs/POPs clients: more details on
http://www.youtube.com/playlist?list=PLzp167WWyvMLpvQeNeurJzbF6yPOeadOS
<http://www.youtube.com/playlist?list=PLzp167WWyvMLpvQeNeurJzbF6yPOeadOS&fea
ture=em-share_playlist_user> &feature=em-share_playlist_user

 

Mauro 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20130603/ec646def/attachment-0001.html 


More information about the users mailing list