Help setting NameID

Adam von Nieda adam at vonnieda.org
Thu Jun 8 16:52:15 EDT 2017


   Thanks for the replies Scott, still learning ..

   I’m now being redirected to the IdP and back to the application, and it seems I’ve gotten authenticated. I can see the following in my transaction.log. 

   2017-06-08 15:23:41 INFO Shibboleth-TRANSACTION [5]: New session (ID: _6f2050c224707a447eb0d3700b24b976) with (applicationId: default) for principal from (IdP: http://fs1.somehost.com/adfs/services/trust) at (ClientAddress: 10.9.231.220) with (NameIdentifier: AvonNieda) using (Protocol: urn:oasis:names:tc:SAML:2.0:protocol) from (AssertionID: _81817b56-0ac3-4f8b-a7a6-1ffe1c9b1055)

   Would there be a way that I can map NameIdentifier to a REMOTE_USER HTTP (or any) header variable?  I’ve found references but I don’t quite understand how to implement. 

   Thanks again,

      -Adam 

--
Adam von Nieda
Adam at vonNieda.org



> On Jun 8, 2017, at 10:57 AM, Cantor, Scott <cantor.2 at osu.edu> wrote:
> 
>>   So do I NEED to do something about NameID on the SP side, or can I ignore
>> this information that I’ve been given?
> 
> I can't answer what your application requires for user identification or authorization.
> 
>> I assumed that was the problem when
>> I hit the test page, it redirected me to the IdP, but the below error came
>> back. 
> 
> That has nothing to do with the SP absent more information. If the IdP refuses to respond successfully, then only the IdP can say why.
> 
> -- Scott
> 
> 
> -- 
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20170608/5d782e03/attachment.html>


More information about the users mailing list