Looking for SAML 1.x AuthnRequest web flow specification

Klingenstein, Nate nklingenstein at calstate.edu
Wed Aug 31 18:28:18 EDT 2016


It's not a SAML specification, sadly.  There is no SAML 1.x authentication request machinery at all, hence the urn:mace:shibboleth binding.  Shibboleth defined its own which actually did exist in a "specification" I'll dig up in a response to this.

I would use the UnsolicitedSSO wiki article as the closest thing there is to a specification in practice.  It's not fancy.

> -----Original Message-----
> From: users [mailto:users-bounces at shibboleth.net] On Behalf Of
> shibboleth655 at lewenberg.com
> Sent: Wednesday, August 31, 2016 3:15 PM
> To: Shib Users <users at shibboleth.net>
> Subject: Looking for SAML 1.x AuthnRequest web flow specification
> 
> The binding
> 
> <SingleSignOnService
> Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest"
> Location="https://idp.example.org/idp/profile/Shibboleth/SSO" />
> 
> appears in an IdP's metadata to indicate, as I understand it, that the IdP
> supports SAML 1.x non-Idp-initiated web flow. Is that correct? In any case,
> where can I find documentation that defines this flow?
> 
> Thanks
> 
> --
> To unsubscribe from this list send an email to users-
> unsubscribe at shibboleth.net


More information about the users mailing list