Allow all attributes to an SP

Christopher Bongaarts cab at umn.edu
Fri May 6 17:39:18 EDT 2016


Here's an odd question that I can't quite seem to figure out myself....

Is there a way (in IdPv3.2.1) to release all values of all attributes to 
a particular SP?

Obviously I could make an AttributeFilterPolicy with an appropriate 
PolicyRequirementRule limiting application to the particular SP, and 
then explicitly list every attribute in an AttributeRule individually, 
but ow, my wrists.

Is there a simpler way to do this?

Background/Use case: set up an SP with access to all attributes, then 
run aacli.sh with various users to validate that our attributes come out 
roughly the same as V2...

-- 
%%  Christopher A. Bongaarts   %%  cab at umn.edu          %%
%%  OIT - Identity Management  %%  http://umn.edu/~cab  %%
%%  University of Minnesota    %%  +1 (612) 625-1809    %%

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20160506/66cbc053/attachment.html>


More information about the users mailing list