Federating with Equifax
Cantor, Scott
cantor.2 at osu.edu
Wed Jan 8 13:41:26 EST 2014
On 1/8/14, 1:34 PM, "Tom Scavo" <trscavo at gmail.com> wrote:
>
>Okay, well, there you have it. In any case, Scott told you what you
>need to do in his last reply. I suppose it's documented in the wiki
>but I don't really know. Have you looked?
It probably is in some form, but you just follow the example. Your
existing cert is already configured the same way, on the
DefaultRelyingParty element.
As a personal matter, what I would do if I were involved is get the
existing key signed by a CA, and provide that to Equifax in whatever form
they demand (I doubt it's metadata). But I wouldn't change my IdP at all.
I would first determine whether they even notice the actual cert in the
message is still the self-signed one. My bet is not. Then I'd laugh and
ridicule them.
-- Scott
More information about the users
mailing list