DocuSign SSO issues on Dev environment.
Andrew Morgan
morgan at orst.edu
Wed Nov 30 17:22:34 EST 2016
On Wed, 30 Nov 2016, Cantor, Scott wrote:
> On 11/30/16, 4:57 PM, "users on behalf of Andrew Morgan"
> <users-bounces at shibboleth.net on behalf of morgan at orst.edu> wrote:
>> Docusign requires a SAML Persistent NameID.
>
> Really? That's unusual. I did speak to them when they were designing the
> new platform, and gave them some advice, that certainly wasn't the
> advice I gave though.
>
> I guess I'm going to have trouble when they want us to move to it.
Their AuthnRequest contains:
<samlp:NameIDPolicy
Format="urn:oasis:names:tc:SAML:2.0:nameid-format:persistent"
AllowCreate="true" />
I don't see any way to change that in their Admin console, and they told
us persistent was required in our project meetings with them.
This is the first use of persistent NameID we have had.
Andy
More information about the users
mailing list