ServiceNow Multi-Provider SSO integration follow-up

Paul B. Henson henson at csupomona.edu
Thu Jul 10 18:48:38 EDT 2014


So we finally finished getting our ServiceNow instance configured to authenticate via our shibboleth idp. We were initially using the custom nameid attribute, but while working on that, we discovered that there was an undocumented feature in the multi-SSO module that allows you to specify an attribute to use as the key rather than the nameid. We ended up going that route, which is much nicer, as we were able to use just the standard attribute we already had for that value and the default transient nameid rather than a custom nameid. The only kludges that ended up being required were hard coding the ServiceNow SP metadata and a custom relying party to disable attribute encryption.

Thanks to everybody for your help along the way...

--
Paul B. Henson  |  (909) 979-6361  |  http://www.csupomona.edu/~henson/
Operating Systems and Network Analyst  |  henson at csupomona.edu
California State Polytechnic University  |  Pomona CA 91768



More information about the users mailing list