Attribute Consent

Klingenstein, Nate nklingenstein at calstate.edu
Wed Jan 25 20:29:31 EST 2017


Joel,

Yes, all you need to do is define a unique entityID for that application.

Then, add a relying party override by name.  In that override, define a reference to "attribute-release" on the SAML 2 configuration as a post authentication flow.

https://wiki.shibboleth.net/confluence/display/IDP30/ConsentConfiguration

Let me know if you need a more detailed example,
Nate.

On 01/26/2017 01:08 AM, Joel Levin wrote:
Is there a way to explicitly specify application whereby the attribute-consent will appear?

We do not need it for 95% of applications -- but require for 5% or so.

j.



-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20170126/9700b96a/attachment.html>


More information about the users mailing list