Where to specify which ACS to use for logging in?

Cantor, Scott cantor.2 at osu.edu
Fri Dec 16 10:16:57 EST 2016


On 12/16/16, 9:56 AM, "users on behalf of Br LRd" <users-bounces at shibboleth.net on behalf of blasterradius at gmail.com> wrote:

> Logging in to <>/Shibboleth.so/Login,

You don't "login to that", that's an endpoint at the SP that can be used to cause it to generate a request to the IdP for an assertion to be delivered to the SP, get a session created, and redirect to a target resource or the homeURL.

> this is how the assertion looks:

No, that's what a SAML AuthnRequest looks like, that's not an assertion.

> Where does shibboleth/IDP get the AssertionConsumerServiceURL and ProtocolBinding values from?

The IdP gets them from the SP, that's the message sent from the SP through the client to the IdP. I doubt that's what you meant to ask, but that's what you literally asked.

-- Scott
    



More information about the users mailing list