Shibboleth IDP trust with other IDP
Cantor, Scott
cantor.2 at osu.edu
Mon Mar 3 21:16:38 EST 2014
On 3/3/14, 9:11 PM, "krrishv" <krish.v at gmail.com> wrote:
>
>Now i have a secondary IDP where users are getting authenticated. I dont
>want to add this IDP to shibboleth SP. Instead of that if i make a
>shibboleth IDP session then i can login to all the apps .
See the thread earlier today about IdP proxying and hub and spoke. You
can't do this by just hacking up something, you're talking about adding SP
functionality in front of an IdP.
>So my flow would be login to IDP1(non shibboleth IDP) This will bring up a
>portal with all SP applications listed based on the user access. Then
>establish a session with shibboleth IDP doing a SAML or somehow(This
>should
>not ask me to for a secondary login) then accesss all the shibboleth APPS
>on
>the portal dashboard. This is what i am trying to achieve.
If the IdP supports SAML, you're done. Why are you trying to add a second
IdP into this?
-- Scott
More information about the users
mailing list