Looking for SAML 1.x AuthnRequest web flow specification
Klingenstein, Nate
nklingenstein at calstate.edu
Wed Aug 31 18:28:18 EDT 2016
It's not a SAML specification, sadly. There is no SAML 1.x authentication request machinery at all, hence the urn:mace:shibboleth binding. Shibboleth defined its own which actually did exist in a "specification" I'll dig up in a response to this.
I would use the UnsolicitedSSO wiki article as the closest thing there is to a specification in practice. It's not fancy.
> -----Original Message-----
> From: users [mailto:users-bounces at shibboleth.net] On Behalf Of
> shibboleth655 at lewenberg.com
> Sent: Wednesday, August 31, 2016 3:15 PM
> To: Shib Users <users at shibboleth.net>
> Subject: Looking for SAML 1.x AuthnRequest web flow specification
>
> The binding
>
> <SingleSignOnService
> Binding="urn:mace:shibboleth:1.0:profiles:AuthnRequest"
> Location="https://idp.example.org/idp/profile/Shibboleth/SSO" />
>
> appears in an IdP's metadata to indicate, as I understand it, that the IdP
> supports SAML 1.x non-Idp-initiated web flow. Is that correct? In any case,
> where can I find documentation that defines this flow?
>
> Thanks
>
> --
> To unsubscribe from this list send an email to users-
> unsubscribe at shibboleth.net
More information about the users
mailing list