Questions starting to implement Shibboleth IDP

Robert Law robert at solutionreach.com
Wed Dec 31 14:50:35 EST 2014


It probably is covered.  We have an application where the users currently
login to use it.  In a nutshell, when they login to that application, we
want to notifiy the IdP that they have logged in so when the application
links to an outside SP and that SP initiates an SSO AuthnRequest to the
IdP.  The IdP knows that the user has signed on even though they haven't
signed on using the IdP.  I'm fairly sure that there needs to be some sort
of back channel communication for the notification to be made.

On Wed, Dec 31, 2014 at 12:31 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:

> > Another question.  We have an application that uses tomcat container
> > security, realms, etc.  When a user has logged in to the application
> they may
> > click a link that takes them to another service provider.  That service
> provider
> > needs to do SSO to the IdP that we will be installing.  Is there anyway
> for a
> > service provider that supports login to notify the IdP that the user has
> logged
> > in, or do we need to perform all logging in to use the IdP?
>
> I'm not sure I understand the question. An authn request from an SP to the
> IdP is SAML, no more or less (modulo extensions in the message). I don't
> know what you're trying to do exactly, so I don't know whether whatever it
> is is something covered by the standard.
>
> -- Scott
>
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20141231/29bd513c/attachment.html 


More information about the users mailing list