Shibboleth Authentication request flow
Sathish Anickode
SAnickode at skytouchtechnology.com
Thu Dec 18 14:01:09 EST 2014
Thanks! The below url's were very informative and answered lots of my questions.
From: users-bounces at shibboleth.net [mailto:users-bounces at shibboleth.net] On Behalf Of David Gersic
Sent: Thursday, December 18, 2014 7:28 AM
To: Shib Users
Subject: Re: Shibboleth Authentication request flow
Shibboleth is an implementation of SAML. So if you understand how SAML works, you understand what Shibboleth is doing. Start here for basic SAML description:
http://en.wikipedia.org/wiki/Security_Assertion_Markup_Language
https://blog.surfnet.nl/?p=1417
________________________________
From: users-bounces at shibboleth.net<mailto:users-bounces at shibboleth.net> <users-bounces at shibboleth.net<mailto:users-bounces at shibboleth.net>> on behalf of Sathish Anickode <SAnickode at skytouchtechnology.com<mailto:SAnickode at skytouchtechnology.com>>
Sent: Wednesday, December 17, 2014 9:02 PM
To: Shib Users
Subject: Shibboleth Authentication request flow
I would like to understand how the authentication request flows between the user's browser, SP and IdP.
A user accesses a resource on a SP for the first time and since there is no associated authenticated session, a SAML request is sent to the IdP to authenticate the user. Since the user does not have an associated session on the IdP, does the IdP send back a SAML response requesting the user to be redirected to the login page? Can you please clarify how this interaction works?
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20141218/46289963/attachment.html
More information about the users
mailing list