RemedyForce/SalesForce Idp Configuration
Cantor, Scott
cantor.2 at osu.edu
Tue Jul 29 11:43:06 EDT 2014
On 7/26/14, 1:04 PM, "Cantor, Scott" <cantor.2 at osu.edu> wrote:
>
>I would have the same questions, but unfortunately there's nobody who can
>answer them except for the vendor, or I guess somebody who's managed to
>make it work. I'm being asked to set this up soon, but I haven't done it
>yet.
I got access to our sandbox just this morning and started working on
configuring this.
So far, I'm seeing no requirement to send them a NameID, as I think
another poster mentioned. You can provide an Attribute name and format to
look for, and I gave it the EPPN OID and URI name format, and that appears
to work.
There are a lot of open questions I'll have to dig into about
provisioning, and there's the usual questions like how do we actually
trigger SSO for users (all I'm seeing so far is password prompts). I got
it to accept an encrypted assertion from the IdP without any non-default
options in my IdP, but so far it's not actually logging me in yet.
Overall, about as easy/hard as any other vendor's non-Shibboleth SAML
implementation.
-- Scott
More information about the users
mailing list