Thoughts/best practice around SP to IDP token passing
Paul Hethmon
paul.hethmon at clareitysecurity.com
Fri Aug 15 15:43:57 EDT 2014
On Aug 15, 2014, at 3:29 PM, Cantor, Scott <cantor.2 at osu.edu<mailto:cantor.2 at osu.edu>> wrote:
I don't know that you can. You're not meant to, so it's not really a goal.
Looks like it's in the Saml2LoginContext class, so accessing the login
context is how.
Duh, yea, I should really read the question. It's there and you can get to it as Scott indicates.
I had at one point to hack the Shib code to manipulate it for an SP, very ugly, very wrong, but big customers sometimes get what they want instead of what's right.
Paul
Paul Hethmon
Chief Software Architect
paul.hethmon at clareitysecurity.com<mailto:paul.hethmon at clareitysecurity.com>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20140815/1156b1aa/attachment.html
More information about the users
mailing list