Help setting up a shibb V3 IDP with OpenLDAP

Cantor, Scott cantor.2 at osu.edu
Fri Feb 27 14:27:45 EST 2015


On 2/27/15, 1:59 PM, "jdcall" <jon at omnibond.com> wrote:

>Unfortunately the guide only applies to Shib V2. Does anyone know if 
>there's
>a similar or updated guide for V3? The step-by-step instructions are so 
>much
>more helpful then the general installation guide I linked to above,
>especially to a newer user such as myself who's trying to expand his
>understandings.

Well, I don't agree, but if the Installation tree alone (which is what you 
linked to) isn't simple enough in covering the basics of installation and 
container setup, I'm afraid I'm pretty much done trying. I can't do any 
better than that. That is not about getting the software functional, so 
maybe you're looking for something that's not there.

With respect to actually configuring the software, the Configration tree 
is purely a reference and topic overview right now, mainly targeted at 
existing users to help with upgrades.

The short answer to an LDAP question is that LDAP is already practically 
there out of the box. The default authentication method out of the box is 
password via LDAP back-end. Edit ldap.properties in what should be 
self-evident ways to anybody who runs LDAP, swap in 
attribute-resolver-ldap.xml for the original file and adjust for some 
initial attributes you want to test with, and it should be usable as a 
starting point.

That of course completely ignores the SAML parts. Without some basic 
knowledge and a source of metadata, you'll be lost no matter what.

-- Scott



More information about the users mailing list