IdP Metadata & Credentials

Tom Scavo trscavo at gmail.com
Sat Jun 4 09:59:18 EDT 2016


On Sat, Jun 4, 2016 at 3:58 AM, Joshua Brodie <josbrodie at gmail.com> wrote:
>
> Looking at presenting to our ops team a description on the IdP 3.2.1
> metadata and the different files under the 'credentials' folder.
>
> Would there be document guidance online? I search the wiki - probably missed
> it - was mostly on SP metadata.

This topic on Security and Networking is probably what you're looking
for: https://wiki.shibboleth.net/confluence/x/VoEOAQ

Btw, that's a great document but every time I go looking for it, it's
difficult to find, I don't know why. Anyway, it is a must-read for any
IdP deployer.

I'm guessing you're upgrading from V2 to V3. You really shouldn't pay
too much attention to the metadata. Your goal during an upgrade is to
not touch metadata at all. After the upgrade, you can think about
separating the signing certificate from the back-channel certificate,
for example.

Tom


More information about the users mailing list