shibbolth 2.5 SP and wso2 IDP

bpraveen bkpraveen at hotmail.com
Wed Mar 18 22:59:07 EDT 2015


please find the shibboleth2.xml and IDP metadata

Thanks

<SPConfig xmlns="urn:mace:shibboleth:2.0:native:sp:config"
    xmlns:conf="urn:mace:shibboleth:2.0:native:sp:config"
    xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"
    xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol"    
    xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata"
    clockSkew="180">

    
    <InProcess logger="native.logger">
        <ISAPI normalizeRequest="true" safeHeaderNames="true">
            
            <Site id="1" name="cgi-d30618.ams.com"/>
            
            
        </ISAPI>
    </InProcess>

    

    
    <RequestMapper type="Native">
        <RequestMap>
            
            <Host name="cgi-d30618.ams.com">
                <Path name="secure" authType="shibboleth"
requireSession="true"/>
            </Host>
            
            
        </RequestMap>
    </RequestMapper>

    
    <ApplicationDefaults entityID="http://cgi-d30618.ams.com/secure"
                         REMOTE_USER="eppn persistent-id targeted-id">

        
        <Sessions lifetime="28800" timeout="3600" relayState="ss:mem"
                  checkAddress="false" handlerSSL="false"
cookieProps="http">

            
            
            <Logout>SAML2 Local</Logout>

            
            <Handler type="MetadataGenerator" Location="/Metadata"
signing="false"/>

            
            <Handler type="Status" Location="/Status" acl="127.0.0.1 ::1"/>

            
            <Handler type="Session" Location="/Session"
showAttributeValues="true"/>

            
            <Handler type="DiscoveryFeed" Location="/DiscoFeed"/>
			
			
<SessionInitiator type="Chaining" id="idpchooser"
Location="/SHIB/idpchooser">
   <SessionInitiator type="SAML2"
     template="bindingTemplate.html"/>
   <SessionInitiator type="Form"
     template="discoveryTemplate.html"/>
</SessionInitiator>

 
            <md:AssertionConsumerService Location="/SAML2/POST" index="1"
                Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"/>
            <md:AssertionConsumerService Location="/SAML2/POST-SimpleSign"
index="2"
               
Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST-SimpleSign"/>
            <md:AssertionConsumerService Location="/SAML2/Artifact"
index="3"
               
Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Artifact"/>
            <md:AssertionConsumerService Location="/SAML2/ECP" index="4"
                Binding="urn:oasis:names:tc:SAML:2.0:bindings:PAOS"/>
            <md:AssertionConsumerService Location="/SAML/POST" index="5"
               
Binding="urn:oasis:names:tc:SAML:1.0:profiles:browser-post"/>
            <md:AssertionConsumerService Location="/SAML/Artifact" index="6"
                Binding="urn:oasis:names:tc:SAML:1.0:profiles:artifact-01"/>


        </Sessions>

        
        <Errors supportContact="root at cgi-d30618.ams.com"
            helpLocation="/about.html"
            styleSheet="/shibboleth-sp/main.css"/>
        
        
        

        
        
		
		
		<MetadataProvider type="Folder" path="metadata"/> 
		
	
        
        <AttributeExtractor type="XML" validate="true" reloadChanges="false"
path="attribute-map.xml"/>
        
        
        <AttributeResolver type="Query" subjectMatch="true"/>

        
        <AttributeFilter type="XML" validate="true"
path="attribute-policy.xml"/>

        
       <CredentialResolver type="Chaining">
		<CredentialResolver type="File" key="sp-key.pem"
certificate="sp-cert.pem"/>
		<CredentialResolver type="File" certificate="wso2cert.pem"
keyName="localhost"/>
       </CredentialResolver>
        
        
    </ApplicationDefaults>
    
    
    <SecurityPolicyProvider type="XML" validate="true"
path="security-policy.xml"/>

    
    <ProtocolProvider type="XML" validate="true" reloadChanges="false"
path="protocols.xml"/>

</SPConfig>




idp metadata

<md:EntityDescriptor entityID="https://localhost:8090/samlsso"
validuntil="2023-09-23T06:57:15.396Z"
xmlns:ds="http://www.w3.org/2000/09/xmldsig#"
xmlns:md="urn:oasis:names:tc:SAML:2.0:metadata"
xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">
   <md:IDPSSODescriptor
protocolSupportEnumeration="urn:oasis:names:tc:SAML:2.0:protocol">
       <md:KeyDescriptor use="signing">
         <ds:KeyInfo>
            <ds:X509Data>
               <ds:X509Certificate>
			  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=
             </ds:X509Certificate>
            </ds:X509Data>
         </ds:KeyInfo>
      </md:KeyDescriptor>
      <md:SingleSignOnService
Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"
Location="https://localhost:8090/samlsso"/>
      <md:SingleSignOnService
Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect"
Location="https://localhost:8090/samlsso"/>
 </md:IDPSSODescriptor>
</md:EntityDescriptor>



--
View this message in context: http://shibboleth.1660669.n2.nabble.com/shibbolth-2-5-SP-and-wso2-IDP-tp7612924p7612925.html
Sent from the Shibboleth - Users mailing list archive at Nabble.com.


More information about the users mailing list