Certificate in IDP metadata xml file

Martin Haase Martin.Haase at DAASI.de
Thu Jan 2 12:21:04 EST 2014


Hi Peter,

remembering this one, I have two important non-edge cases, one of which
came up today:

* if you want to download IdP metadata for an SP via
https://server/idp/profile/Metadata/SAML, that file must be current
* uApprove does not work if the IdP does not know its own metadata:
https://forge.switch.ch/redmine/issues/1542

Seems like the new IdP 2.4.0 expects idp-metadata.xml in its default
place if it is not mentioned in relying-party.xml.

This is JFTR, cheers,
Martin



Am 17.12.2011 18:27, schrieb Peter Schober:
> * Kobe Bryant <kbbryant61 at gmail.com> [2011-12-17 17:37]:
>> Off topic:
>>
>>     >With one unimportant edge case exception, the metadata is of no
>> interest to the
>> IdP.
>>
>> Which edge case are you referring to?
> It says so in the IdP's config:
>
> $ fgrep own conf/relying-party.xml
>         <!-- Load the IdP's own metadata.  This is necessary for artifact support. -->
>
> -peter
> --
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net

-- 
Dr. Martin Haase, Solutions Engineer

DAASI International GmbH        
Europaplatz 3                   
D-72072 Tübingen                
Germany                    

phone: +49 7071 407109-6
fax:   +49 7071 407109-9  
email: martin.haase at daasi.de
web:   www.daasi.de

Sitz der Gesellschaft: Tübingen
Registergericht: Amtsgericht Stuttgart, HRB 382175
Geschäftsleitung: Peter Gietz


-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 2345 bytes
Desc: S/MIME Cryptographic Signature
Url : http://shibboleth.net/pipermail/users/attachments/20140102/d5f3c654/attachment.bin 


More information about the users mailing list