use of JWT and / or STS with Shibboleth IDP?
Liam Hoekenga
liamr at umich.edu
Wed Oct 5 16:06:54 EDT 2016
We're working to deploy IBM's API Manager. The API manager integration
team has asked if the IDP can provide an authentication token...
>From our meeting notes..
- After successful shibboleth authentication, pass a token back to the APIm
for use during the session
- After successful shibboleth authentication, generate a token and display
it on a web page so that the token can be used on the command line.
- Create a URI that will take as input a base 64-encoded uniqname:token
pair, and tell whether the token is still valid.
Based on their request, it feels a lot like they're asking for us to
provide a security token service, or for for the IDP to produce JWT.
Am I reading this right? How have others in the community provided this
functionality?
Liam
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20161005/eb839c1e/attachment.html>
More information about the users
mailing list