Session Logout link
Farzan Qureshi
fqureshi at rosmini.school.nz
Wed Aug 20 16:31:34 EDT 2014
Hi Rob,
Thanks for the information. You are right somewhere on o365 our old
settings are stuck and thus I had issues at first instance which created
all confusion.
I am now able to authenticate at o365 and now the issue is signingout of
the services. Thanks for the information you have provided.
Kind regards,
Farzan
On 21 August 2014 06:07, Rob Gorrell <rwgorrel at uncg.edu> wrote:
> Secondly, about the link FederationMetaDataUrl. I understand that it has
>> nothing to do (for this scenario at least) after the discussion had with
>> Rob. May be my understanding was wrong. I thought that SP needs a metadata
>> to process the flow and vice versa. But here, only our IdP needs metadata
>> file.
>>
>
> To be correct, the SP (O365) does need metadata, it just doesn't get it
> from a file or URL... but rather by you 'uploading' it using Powershell
> (Set-MsolDomainAuthentication cmdlet to be exact... the params you're
> supplying with this are in fact telling the SP about the IdPs metadata).
>
>
> And yes, I agree with Scott's sentiments... I was struggling as well to
> understand how anything you did to the ADFS server mattered. If you
> configured the SP to use ADFS, those settings were likely still plugged
> into the domain, irregardless of you uninstalling/rebooting/doing whatever
> to the ADFS server. IdP and SP configurations happen separately, and my
> guess is you still had ADFS settings implanted into your O365 domain that
> was causing problems.
>
> And just to be clear about what I mean and I'm no expert on the matter,
> but despite being both ways of "federating" with O365, there is little to
> no parity in how you configure ADFS vs SAML... and you will find many of
> the configuration options and powershell cmdlets that do this work aren't
> shared between the two approaches. This is what I meant when I cautioned
> you that unless otherwise specifically stated, Microsoft is assuming ADFS
> when talking about federating and that has no crossover to the SAML world.
>
> -Rob
>
>
>
> --
> Robert W. Gorrell
> Systems Architect, Identity and Access Management
> University of NC at Greensboro
> 336-334-5954
> PGP Key ID B36DB0CA
>
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
--
*Farzan Qureshi* | Network Administrator & Help-desk Support | Rosmini
College | (09) 487 0 530
--
This email and any files transmitted with it are confidential and intended
solely for the use of the individual or entity to whom they are addressed.
If you have received this email in error please notify the system manager (
admin at rosmini.school.nz). Please note that any views or opinions presented
in this email are solely those of the author and do not necessarily
represent those of the company. Finally, the recipient should check this
email and any attachments for the presence of viruses. Rosmini College
accepts no liability for any damage caused by any virus transmitted by this
email.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20140821/d642dce0/attachment.html
More information about the users
mailing list