Help setting NameID
Adam von Nieda
adam at vonnieda.org
Thu Jun 8 16:52:15 EDT 2017
Thanks for the replies Scott, still learning ..
I’m now being redirected to the IdP and back to the application, and it seems I’ve gotten authenticated. I can see the following in my transaction.log.
2017-06-08 15:23:41 INFO Shibboleth-TRANSACTION [5]: New session (ID: _6f2050c224707a447eb0d3700b24b976) with (applicationId: default) for principal from (IdP: http://fs1.somehost.com/adfs/services/trust) at (ClientAddress: 10.9.231.220) with (NameIdentifier: AvonNieda) using (Protocol: urn:oasis:names:tc:SAML:2.0:protocol) from (AssertionID: _81817b56-0ac3-4f8b-a7a6-1ffe1c9b1055)
Would there be a way that I can map NameIdentifier to a REMOTE_USER HTTP (or any) header variable? I’ve found references but I don’t quite understand how to implement.
Thanks again,
-Adam
--
Adam von Nieda
Adam at vonNieda.org
> On Jun 8, 2017, at 10:57 AM, Cantor, Scott <cantor.2 at osu.edu> wrote:
>
>> So do I NEED to do something about NameID on the SP side, or can I ignore
>> this information that I’ve been given?
>
> I can't answer what your application requires for user identification or authorization.
>
>> I assumed that was the problem when
>> I hit the test page, it redirected me to the IdP, but the below error came
>> back.
>
> That has nothing to do with the SP absent more information. If the IdP refuses to respond successfully, then only the IdP can say why.
>
> -- Scott
>
>
> --
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20170608/5d782e03/attachment.html>
More information about the users
mailing list