Shibboleth IdP v3.2.1 & LDAP+AD Authentication
Daniel Fisher
dfisher at vt.edu
Wed Jun 22 10:06:11 EDT 2016
On Tue, Jun 21, 2016 at 6:32 PM, Michael A Grady <mgrady at unicon.net> wrote:
> If one does aggregate DN resolvers/authn handlers, what happens if the
> user is found in both, but authentication succeeds in one and fails in the
> other?
>
Only one authentication event occurs. The DN resolver will throw by default
if more than one DN is found. If you configure it to allow multiple DNs,
the first one found in the underlying collection will be used.
--Daniel Fisher
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20160622/827cfc41/attachment-0001.html>
More information about the users
mailing list