SAML2 with WebMD

Cantor, Scott cantor.2 at osu.edu
Fri Apr 3 16:17:20 EDT 2015


On 4/3/15, 4:10 PM, "Koch, Ken" <ken at wustl.edu> wrote:

>We don’t have any IDPUnsolicitedSSO right now and are mid-way in transition to IdPv3. From what I read, the IdPv2 docs still apply with no modifications to our 3.1.1 IdP?

Yes, they do, but as this is a proprietary mechanism, my advice is that you insulate the link by implementing a CGI script in a place you control (on the same box is fine) and use that to generate the IdP request.

This is especially good if the link ends up either in the vendor's system or on web page(s) you don't have any good way to change.

-- Scott



More information about the users mailing list