Re: Shibboleth IdP integration with Oracle 11g Identity Federation
Kevin P. Foote
kpfoote at iup.edu
Wed Mar 27 22:43:19 EDT 2013
Yep that sounds like the OIF GUI <shudder>
I can take another look at configuration tomorrow AM.
I think I covered where we got tripped up though sign vs unsigned, NameId / format, and backing dir. were the main ones.
And for the record our IdP is Shibboleth ;-)
sent from mobile
----- Reply message -----
From: "lalithj" <j_lalith at hotmail.com>
To: <users at shibboleth.net>
Subject: Shibboleth IdP integration with Oracle 11g Identity Federation
Date: Wed, Mar 27, 2013 9:40 PM
Thanks Scott,
I did further reading on OIF meaning of these fields, please find below,
Primarily provider ID and SSO Service URL are mandotory
SSO Service URL is not mandotory, that is the one gives this bad certificate
error etc.
Name
This is the provider name.
Description
This is a brief description of the provider. (Optional).
Protocol
This is the provider protocol (SAML 1.1, SAML 2.0 and so on).
Service Details
This drop-down enables you to choose whether to enter service details
manually or load from metadata.
Metadata File
This field appears if loading metadata from a file. Click Browse to select
a file to use.
provider ID
This is the issuer ID of the provider.
Succinct ID
This is the succinct ID of the provider. This element is required if using
the artifact profile.
SSO Service URL
This is the URL address to which SSO requests are sent.
SOAP Service URL
This is the URL address to which a SOAP service request is sent. This
element is required if using artifact profile.
Logout Request Service URL
This is the URL address to which a logout request is sent by the provider.
This element is required if using the logout feature.
Logout Response Service URL
This is the URL address to which a logout response is sent. This element is
required if using the logout feature.
Signing Certificate
This is the signing certificate used by the provider. You can specify it in
pem and der formats.
User Identity Store
This is the identity store against which a user is authenticated. If none
is selected, the default identity store is used.
User Search Base DN
This is the base search DN used when looking up user records. (Optional. If
omitted, the default user search base DN configured for the selected user
identity store is used.)
--
View this message in context: http://shibboleth.1660669.n2.nabble.com/Shibboleth-IdP-integration-with-Oracle-11g-Identity-Federation-tp7585604p7585721.html
Sent from the Shibboleth - Users mailing list archive at Nabble.com.
--
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20130327/933da484/attachment.html
More information about the users
mailing list