use of JWT and / or STS with Shibboleth IDP?

Liam Hoekenga liamr at umich.edu
Wed Oct 5 16:06:54 EDT 2016


We're working to deploy IBM's API Manager.  The API manager integration
team has asked if the IDP can provide an authentication token...

>From our meeting notes..
- After successful shibboleth authentication, pass a token back to the APIm
for use during the session
- After successful shibboleth authentication, generate a token and display
it on a web page so that the token can be used on the command line.
- Create a URI that will take as input a base 64-encoded uniqname:token
pair, and tell whether the token is still valid.

Based on their request, it feels a lot like they're asking for us to
provide a security token service, or for for the IDP to produce JWT.

Am I reading this right? How have others in the community provided this
functionality?

Liam
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20161005/eb839c1e/attachment.html>


More information about the users mailing list