Banner ERP using Shibboleth IdP?

Steven Carmody steven_carmody at brown.edu
Fri Sep 18 10:56:43 EDT 2015


On 9/18/15 10:26 AM, Liam Hoekenga wrote:
>
> So it is possible configure banner to use an IdP other than the wso2
> based Ellucian IdP.
> What that difficult?  The information I've seen so far was just about
> configuring the the Ellucian IdP to work with SAML and CAS SPs.
>

With Banner 8.x you have to install and use BEIS -- Banner Enterprise 
Identity Services. This requires that you create yet another person 
identifier within BEIS; BEIS then maps that "universal" identifier to 
the identifier used by each of the (different) Banner Business systems 
(eg to PIDM for the Student system). Shib supplies that universal 
identifier to the BEIS SSO endpoint.

BEIS also includes support for SSO (both CAS and SAML). Their manual 
named beis80105hb describes how to configure the SSO support to use SAML.

Banner XE ...uh .... currently only supports CAS, but they've promised 
SAML support. We do use Shib to login to XE, but I'm embarrassed to tell 
you how we did it. I'm very much looking forward to moving to Shib IDP 
V3, and using its native CAS support to login to XE. That will allow us 
to remove a lot of duct tape.


More information about the users mailing list