Integration of Shibboleth with existing login functionality

Cantor, Scott cantor.2 at osu.edu
Mon May 20 15:52:26 EDT 2013


On 5/20/13 3:46 PM, "Nate Klingenstein" <ndk at internet2.edu> wrote:
>
>I believe the SP doesn't have the ability to query the application before
>creating a session, but session creation can be made optional and
>triggered by the application itself.
>
>https://wiki.shibboleth.net/confluence/display/SHIB2/NativeSPSessionInitia
>tor

See also 
https://wiki.shibboleth.net/confluence/display/SHIB2/NativeSPProtectContent

However, the better solution is almost always to turn your non-SAML
authentication methods into a separate Identity Provider choice and just
unify all access through one mechanism.

-- Scott




More information about the users mailing list