Integration with GSA (Google Search Appliance)

Michael A Grady mgrady at unicon.net
Tue Jul 25 11:34:39 EDT 2017


> On Jul 25, 2017, at 10:27 AM, Cantor, Scott <cantor.2 at OSU.EDU> wrote:
> 
> On 7/25/17, 10:06 AM, "users on behalf of d.alvarez2" <users-bounces at shibboleth.net on behalf of d.alvarez2 at miami.edu> wrote:
> 
>> How can we bypass (whitelist) IP addresses so that we skip Google Search
>> Appliance specifically only?
> 
> What aspect of this has any connection to Shibboleth? I don't know what you're asking, but it seems like the wrong place to ask.
> 
> -- Scott


I think she is trying to get the GSA to index the contents of otherwise SAML/Shib protected web server content. Not sure why, if that Google Search is then itself behind an access control layer?

But it would seem to make more sense to change the SP in front of the content rather than the IdP. If it is a Shib SP, SWITCH has nice documentation on how you might combine Apache authorization rules to require Shib *or* a given IP address:

  https://www.switch.ch/aai/guides/sp/access-rules/?version=2_2 <https://www.switch.ch/aai/guides/sp/access-rules/?version=2_2>

  (you can toggle that page between versions 2.2 or 2.4 of HTTPD)

--
Michael A. Grady
IAM Architect, Unicon, Inc.



-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20170725/3b8fd755/attachment.html>


More information about the users mailing list