IdP Initiated SSO

Cantor, Scott cantor.2 at osu.edu
Wed Aug 31 13:18:59 EDT 2016


On 8/31/16, 1:08 PM, "users on behalf of Michael Dahlberg" <users-bounces at shibboleth.net on behalf of olgamirth at gmail.com> wrote:

>    On a related note, is the option to encrypt/not encrypt the nameID different when using
> Unsolicited SSO?

Nope.

>  The reason I ask is because in the bean for this entityId in the relying-party file, I 
> have the following line:

That's the default, so there's no reason to do that.

>    Unfortunately, the nameId looks like its still being encrypted

I can guarantee you it's not. Transient IDs are not encrypted, they're simply not readable.

-- Scott

    
    
    




More information about the users mailing list