Banner ERP using Shibboleth IdP?
Steven Carmody
steven_carmody at brown.edu
Fri Sep 18 10:56:43 EDT 2015
On 9/18/15 10:26 AM, Liam Hoekenga wrote:
>
> So it is possible configure banner to use an IdP other than the wso2
> based Ellucian IdP.
> What that difficult? The information I've seen so far was just about
> configuring the the Ellucian IdP to work with SAML and CAS SPs.
>
With Banner 8.x you have to install and use BEIS -- Banner Enterprise
Identity Services. This requires that you create yet another person
identifier within BEIS; BEIS then maps that "universal" identifier to
the identifier used by each of the (different) Banner Business systems
(eg to PIDM for the Student system). Shib supplies that universal
identifier to the BEIS SSO endpoint.
BEIS also includes support for SSO (both CAS and SAML). Their manual
named beis80105hb describes how to configure the SSO support to use SAML.
Banner XE ...uh .... currently only supports CAS, but they've promised
SAML support. We do use Shib to login to XE, but I'm embarrassed to tell
you how we did it. I'm very much looking forward to moving to Shib IDP
V3, and using its native CAS support to login to XE. That will allow us
to remove a lot of duct tape.
More information about the users
mailing list