Shibboleth with Office 365

Mauro Minella Mauro.Minella at microsoft.com
Fri May 24 03:56:30 EDT 2013


I confirm that Microsoft SP authentication system (MS Federation Gateway) DOES need a public (NOT self-signed) certificate on the IdP side.
What COULD be self-signed, though, is the token-signing certificate on the ADFS server, which would automatically be renewed before expiration thanks to the auto-rollover feature, enabled by default.
For an end-to-end overview of the Office365 federation process with Shibboleth, you may find this link useful http://www.youtube.com/playlist?list=PLzp167WWyvMLpvQeNeurJzbF6yPOeadOS&feature=em-share_playlist_user

Mauro

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20130524/d0d7ee73/attachment.html 


More information about the users mailing list