use of JWT and / or STS with Shibboleth IDP?

Klingenstein, Nate nklingenstein at calstate.edu
Wed Oct 5 16:24:38 EDT 2016


Beyond Scott's response:

> Am I reading this right? How have others in the community provided this functionality?


If you blur some of their requirements (e.g. uniqname:token rather than just a token -- why?) a vanilla SAML 2.0 artifact and a really simple webapp would suffice, no?

I have my reservations about JWT, personally, but I wouldn't let that dissuade you.


More information about the users mailing list