Where to specify which ACS to use for logging in?

Br LRd blasterradius at gmail.com
Fri Dec 16 09:56:52 EST 2016


Logging in to <>/Shibboleth.so/Login,

this is how the assertion looks:


<samlp:AuthnRequest xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol"

AssertionConsumerServiceURL="http://localhost/Shibboleth.sso/SAML2/POST"
                    Destination="<>"
                    ID="_7a4d6d46adfb130c629f2fba99b0aba9"
                    IssueInstant="2016-12-16T14:55:31Z"

ProtocolBinding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"
                    Version="2.0"
                    >
    <saml:Issuer
xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">https://sp.example.org/shibboleth</saml:Issuer>
    <samlp:NameIDPolicy AllowCreate="1" />
</samlp:AuthnRequest>

Where does shibboleth/IDP get the
AssertionConsumerServiceURL and ProtocolBinding values from?
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20161216/a111fbc4/attachment-0001.html>


More information about the users mailing list