off-topic help for Office 365

Rob Gorrell rwgorrel at uncg.edu
Wed Feb 17 14:53:59 EST 2016


>
>
> Without commenting on how clueless MS support is, they are asking me to try a CA signed certificate for the SAML signing certificate (instead of the normal self-signed cert created at installation). So some questions in case someone else has had to bang their head against the O365 wall:
>
>
> I know literally zero about Office 365, so I have no idea how their trust
> works and what they really require.  Do you supply a metadata XML
> document?  Do you upload a key + other info to a mgmt UI on the MS side?
>

no metadata XML, you upload a 1. domain, 2. url (binding), 3. ecp url
(binding), 4. uri (entityID), 5. logout url, and 6. base64 encoded x509
cert. to my knowledge, O365 will only do signing, no encryption of the
assertion.

-Rob




-- 
Robert W. Gorrell
Systems Architect, Identity and Access Management
University of NC at Greensboro
336-334-5954
PGP Key ID B36DB0CA
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20160217/6aaa85f8/attachment-0001.html>


More information about the users mailing list