Problems using FEIDE as IdP with shibboleth

Peter Schober peter.schober at
Mon Apr 4 08:59:34 EDT 2016

* Peter Schober <peter.schober at> [2016-04-04 14:41]:
> I don't see SAML Metadata published for
> anywhere (e.g. in ) so mabe talk to to the
> FEIDE folks, at <support at>.

E.g. if you just grabbed it from here:
then a default Shib SP (or SimpleSAMLphp SP with the added code for
Scope checking) would never accept any scoped attributes (such as
eduPersonPrincipalName) from an IDP with that metadata.

The metadata needs to match the attribute's scope value, you don't
provide either of those, so it all depends on where you got them from
and what that IDP sends. (Maybe sends data with
difference scopes that, etc., all questions for FEIDE

More information about the users mailing list