Docusign

Andrew Morgan morgan at orst.edu
Mon Aug 8 21:20:10 EDT 2016


On Mon, 8 Aug 2016, IAM David Bantz wrote:

> DocuSign is a net+ service provider, and the I2 site lists 15 subscribing
> institutions (
> http://www.internet2.edu/products-services/cloud-services-applications/docusign/docusign-subscribers/
> ).
>
> I'm hoping one or more of those 15 is represented here, and would be
> willing to share working IdPconfiguration. (When I last looked, the only
> option I could find was a less-than-robust proxy or relay through a third
> party vendor. I'm hoping for a direct integration between our Shibboleth
> IdP and Docusign.)
>
> David Bantz
> UAlaska

David,

*This OSU* has setup our IDP with Docusign in their demo environment.

A few things to note:

1. They do not consume nor publish metadata in InCommon.  They have an 
instance-specific entityID.  I asked them to publish their metadata.  They 
said they're working on it.  You should bug them too.

2. They require a "urn:oasis:names:tc:SAML:2.0:nameid-format:persistent" 
NameID, and they mean it.  The identifier must be persistent because they 
don't allow renames.

3. Turn encryption off.  They don't support it.

4. If you select Signed Requests, they have a bug that will always do a 
POST, so make sure you put a POST endpoint in for the URL.

I think that's it.  If you run into trouble, I can share our working 
config.

 	Andy


More information about the users mailing list