Repeated Login with Shib (idp) and ADFS (sp)

Thomas Jones thomas.jones.g at gmail.com
Thu Jan 22 10:27:26 EST 2015


Thanks Scott for the response.

That means that I have to go the ADFS and change the endopoint of the SP's
app that Shib is using to send the assertion, in order to use an endpoint
that's actually saml and not ws-federation, right?

Thanks,

On Thursday, January 22, 2015, Cantor, Scott <cantor.2 at osu.edu> wrote:

> On 1/22/15, 2:27 PM, "Thomas Jones" <thomas.jones.g at gmail.com
> <javascript:;>> wrote:
>
>
> >
> >I've seen that when my external app sends the respond to Shib's Idp and
> >this sends the respond to the ADFS, this one tries to access the next URL
> >(but later on it sends the user back to my external app, to repeat the
> >authentication process, as I have just
> > mentioned):
> >
> >
> >https://adfs-domain/adfs/ls/?wa=wsignin1.0&wtrealm=https%3a%2f%2appcomain
> .
> >com%2fapp.internet%2f&wfresh=5&wctx=rm%3d0%26id%3dpassive%26ru%3d%252fapp.
> >internet%252fHome%252fStart&wct=2015-01-22T00%3a15%3a24Z
>
> That's WS-Federation, not SAML. Assuming you didn't already know that.
>
> >But after the user has repeated for the second time the authentication,
> >the previous URL is not showed at all. Is this a miss configuration from
> >the ADFS or Shib?
>
> Has nothing to do with Shibboleth.
>
> -- Scott
>
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net <javascript:;>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20150122/62b2e9cc/attachment.html 


More information about the users mailing list