Where to specify which ACS to use for logging in?
Cantor, Scott
cantor.2 at osu.edu
Fri Dec 16 10:16:57 EST 2016
On 12/16/16, 9:56 AM, "users on behalf of Br LRd" <users-bounces at shibboleth.net on behalf of blasterradius at gmail.com> wrote:
> Logging in to <>/Shibboleth.so/Login,
You don't "login to that", that's an endpoint at the SP that can be used to cause it to generate a request to the IdP for an assertion to be delivered to the SP, get a session created, and redirect to a target resource or the homeURL.
> this is how the assertion looks:
No, that's what a SAML AuthnRequest looks like, that's not an assertion.
> Where does shibboleth/IDP get the AssertionConsumerServiceURL and ProtocolBinding values from?
The IdP gets them from the SP, that's the message sent from the SP through the client to the IdP. I doubt that's what you meant to ask, but that's what you literally asked.
-- Scott
More information about the users
mailing list