Multiple IdPs without discovery
Phil Gold
phil at cs.jhu.edu
Thu Mar 20 17:12:52 EDT 2014
* Cantor, Scott <cantor.2 at osu.edu> [2014-03-20 20:55 +0000]:
> On 3/20/14, 4:51 PM, "Phil Gold" <phil at cs.jhu.edu> wrote:
> >Do you have any suggestions about where I should be looking to figured out
> >what I'm doing wrong?
>
> Yes, you're applying the setting to a piece of content, and then
> redirecting away from it so it no longer matters.
>
> You don't use the setting if you're going to redirect to
> /Shibboleth.sso/Login, at that point you need the parameter (or you need
> to apply the setting to /Shibboleth.sso/Login but that's probably not what
> you want).
* Peter Schober <peter.schober at univie.ac.at> [2014-03-20 21:58 +0100]:
> Decide on whether you want httpd to intiate sessions or whether you
> want to do that in your (application's) code.
> You can do both, of course, if you know what to expect.
Ah, I understand now. I was thinking (foolishly, in retrospect) that the
Apache settings would affect all application-initiated authentications for
a covered set of locations. I should have thought more about the
mechanics of that initiation and realized that the Apache settings were
unlikely to have any bearing.
--
Phil Gold / JHU CS IT (Linux)
phil at cs.jhu.edu
More information about the users
mailing list