Dynamic (or Relative) URL for both IdP and SP
Kirill
ks.grishin at gmail.com
Fri Feb 5 00:34:25 EST 2016
> What, the access URL of the IdP? No. If you live at two locations, you
should deploy two IdPs. Or you can have the SP sign its requests and set
the option to turn off ACS validation.
Sorry, I was not clear enough. No, not the URL of IdP.
What I need to do, is to be able to control the url that is set as the
action attribute to the html form when using POST binding. In other words,
the url to which the saml authentication response is sent.
I understand that this URL is read from SP's metadata (this would be in
AssertionConsumerService element's Location attribute). So I need be able
to tweak it depending on the host name of the IdP for each authentication
request.
Any ideas? For example, can I have multiple metadatas for a single SP's
entity id and choose the one I need to use in runtime?
> Generally that means you should deploy two IdPs and just be done with it.
I am having this in mind, but would like to avoid this if possible. Leaving
ad the last resort because this is quite heavy.
Thanks.
On Fri, Feb 5, 2016 at 12:12 AM, Cantor, Scott <cantor.2 at osu.edu> wrote:
> > Can the same thing be done for the IdP (ver. 3.1.2)? I mean supplying (or
> > rather choosing) different SP's metadata depending on the host name of
> the
> > access URL? If yes, could somebody give me some pointers on where to look
> > at?
>
> What, the access URL of the IdP? No. If you live at two locations, you
> should deploy two IdPs. Or you can have the SP sign its requests and set
> the option to turn off ACS validation.
>
> > By the way, I plan to use multiple IdP's entityIDs and use IdP Discovery
> to
> > make the correct selection of the IdP on the SP side.
>
> Generally that means you should deploy two IdPs and just be done with it.
>
> -- Scott
>
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20160205/d6b28da1/attachment.html>
More information about the users
mailing list