Shibboleth IdP 3 External Authn isPassive

Cantor, Scott cantor.2 at osu.edu
Tue Dec 23 13:57:30 EST 2014


On 12/23/14, 6:31 PM, "Gary Gwin" <ggwin at cafesoft.com> wrote:
>
>The only difference is that AUTHENTICATION_ERROR_KEY logs a local WARN 
>message. Is there a way to signal in the response that authn failed 
>because of a AuthnEventIds.NO_PASSIVE event?

It shouldn't be necessary because nothing much checks second level 
statuses, but yes, you can signal an error message or exception message 
that you classify in authn/external-authn-config.xml as the NoPassive 
event. That should map by default to that status result in errors.xml

None of that is very well tested.

-- Scott



More information about the users mailing list