Getting access to Shib Attributes after initial authentication
Guy Tadi
tadiguy812 at gmail.com
Fri Apr 17 17:45:00 EDT 2015
Thanks. That was helpful. I had tried that earlier and it didn't work, but
after your response above I decided to try it again. Of course it still
didn't work, but then it struck me there might be something else wrong and
indeed it was my webserver config. All is well now. Thanks a million.
On Fri, Apr 17, 2015 at 4:58 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:
> > I'm still unclear about this. If I change my RequestMapper to
> > <Path authType="shibboleth" /> I get a configuration error.
>
> I didn't say to do that, and that isn't valid, Paths require names. If you
> want to attach settings to a Host, you put it in the Host element.
>
> > I thought requireSession="true" is needed to trigger SP and get assertion
> > from IdP.
>
> If you want to trigger a session for /secure, then do that. You asked how
> to get the data visible for other content, and the answer is to attach the
> authType setting to *that* content. With or without requireSession being
> set, any existing session will be processed and exported for that request.
>
> > Using my current configuration below can you please clarify a bit which
> > values to use for each attribute and which ones, if any, I should remove
> > completely?
>
> Add authType to the Host. If that doesn't work, then I'm not remembering
> the code well enough and would have to go do some checking.
>
> -- Scott
>
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20150417/8c02c1e3/attachment.html
More information about the users
mailing list