Questions about setup a clustered Shib IdP
Yaowen Tu
yaowen.tu at gmail.com
Tue Mar 19 18:32:19 EDT 2013
Hi,
I am exploring the possibilities to setup a clustered Shib IdP. Hopefully
people who have successfully built a Shib IdP could help to answer some
questions and give me some guidelines and best practices.
1. If several IdP nodes act as a cluster, does it mean that they have to
use the same keystore? Then should we put the keystore file into a shared
location? or just copy the same keystore file to all the nodes?
2. Similar to keystore file, should all the IdP have the same
configuration? What if we need to update the config file e.g. adding an SP.
We need to go to each IdP to update the file, and restart it? During this
process, some weird things may happen since not all the nodes in the
cluster have the same configuration, is it? How do we usually handle it?
Thanks,
Yaowen
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20130319/af060de4/attachment.html
More information about the users
mailing list