Multiple Login Handlers
evilcraftknife
kev at bolton-sfc.ac.uk
Tue Sep 24 12:35:58 EDT 2013
Hello
We have a Shibboleth IDP which has been working away in the background
authenticating our college users for access to JISC resources. Our internal
resources are currently protected by NTLM authentication because of the
'invisibility' of authentication. With more devices, browsers and Internet
Explorer versions around I'm finding that this is becoming a bit of a pain
to keep on top of which browsers are going to work properly with NTLM, so
I'm thinking that the time has come to look at a better SSO solution. We've
already got a working IDP so it seems an obvious choice. The problem is we'd
like a 'silent' log in à la NTLM for computers connected to the local LAN.
We have no issue using the username/password login page external to our
network as NTLM prompts us for credentials anyway. I believe that the
Kerberos login handler would be best internally. Is there a simple way for
the IDP to select an appropriate login handler based on IP addresses/CIDR?
Kev
Bolton Sixth Form College
UK
--
View this message in context: http://shibboleth.1660669.n2.nabble.com/Multiple-Login-Handlers-tp7590213.html
Sent from the Shibboleth - Users mailing list archive at Nabble.com.
More information about the users
mailing list