"SAML 2.0 Compliant"?

Tom Scavo trscavo at gmail.com
Tue May 28 17:49:14 EDT 2013


On Tue, May 28, 2013 at 5:30 PM, Marc Boorshtein <mboorshtein at gmail.com> wrote:
> Along the same lines, I tend to focus more on which profiles are supported,
> which identifiers, etc.  Most every vendor "supports" SAML2 but they might
> require specific authentication mechanisms (ADFS) or have limitations such
> as only able to supply a user identifier in the assertion but not other
> attributes.

As Scott mentioned earlier, the ability to handle SAML metadata is a
crucial differentiator. For example, ask your partner how they handle
key rollover (https://spaces.internet2.edu/x/vgEFAQ) to see how much
hand holding is required.

Tom


More information about the users mailing list