Federating with Equifax

Cantor, Scott cantor.2 at osu.edu
Wed Jan 8 13:41:26 EST 2014


On 1/8/14, 1:34 PM, "Tom Scavo" <trscavo at gmail.com> wrote:
>
>Okay, well, there you have it. In any case, Scott told you what you
>need to do in his last reply. I suppose it's documented in the wiki
>but I don't really know. Have you looked?

It probably is in some form, but you just follow the example. Your
existing cert is already configured the same way, on the
DefaultRelyingParty element.

As a personal matter, what I would do if I were involved is get the
existing key signed by a CA, and provide that to Equifax in whatever form
they demand (I doubt it's metadata). But I wouldn't change my IdP at all.
I would first determine whether they even notice the actual cert in the
message is still the self-signed one. My bet is not. Then I'd laugh and
ridicule them.

-- Scott




More information about the users mailing list