Shibboleth IdP configuration with simplified backend

Marek Denis marek.denis at
Wed Apr 30 11:18:00 EDT 2014

Dear all,

Thanks for your invaluable answers.

@Kevin - ECP on is a great news. I will not have to spend
time on my own IdP (which i don't really need). I thought it was
turned off due to ECP not being super-popular and also due to the fact
that no docs mentioned ECP. What I need to is to simply write a ecp
and adfs compilant Python client so I am guessing some
troubleshooting/debuging will need to be carried out. I am expecting I
should just hit HTTP URI https://host/profile/SAML2/SOAP/ECP , right?

@Scott - Thanks for the config. I guess your Python ECP scripts worked
well with that config?

Now, since some people started mentioning different authn mechanisms -
is HTTP Basicauth a most popular authn mechanism with user/password
involved? Doesn't ECP itself include some authn mechanism?

And lastly, my initial question concerned backends sitting behind IdP.
So, as I needed a very simple IdP I was asking if there are other
configs/plugins for setting up Shibboleth IdP with something but LDAP
underlying. LDAP is probably not very easy to setup and configure,
especially given the fact I have never done this before :-)



2014-04-30 16:44 GMT+02:00 Peter Schober <peter.schober at>:
> * Marek Denis <marek.denis at> [2014-04-30 14:59]:
>> I would be extremely happy with some docs/examples for a static
>> configuration (with flat files) or simple references for MySQL
>> configurations. Anybody?
> For JAAS there this:
> -peter
> --
> To unsubscribe from this list send an email to users-unsubscribe at

Marek Denis

More information about the users mailing list