Basic Federation
Michael Wang
mwang at macquarietelecom.com
Fri Nov 27 01:24:31 EST 2015
Hi,
We are trying to setup SSO for various applications that we offer to our customers. We got some fundamental conceptual questions.
We'd like to setup our own federation with two "organizations". Each organization has 1 IdP and 1 or more SPs.
- How is this federation setup? We don't need to explicitly setup the trust between all right? There seems to be a lot of writeup of trust setup between IdP and SP but not explicitly on federation?
- How is user authenticated at IdP1 gets trusted at SP2 without explicitly login with IdP2?
- If SP2 requires special attributes from IdP2 but user is logged in via IdP1 then how does SP2 obtain attributes from IdP2?
Thanks so much.
Regards,
Michael.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20151127/24927e39/attachment.html>
More information about the users
mailing list