Shib 3.2.1 LDAP authentication quesiton

Peter Schober peter.schober at univie.ac.at
Fri Jun 30 09:01:40 EDT 2017


* Cheltenham, Chris <ccheltenham-ext at philasd.org> [2017-06-30 14:21]:
> We have Shib with a CAS overlay 4.2 for authorization, LDAP for
> authentication.
> 
> If we are pointing to a production ldap in idp.properties, does that mean
> we are actually authenticating through production ldap.
> 
> As opposed to test or dev ldao as we had always assumed we were going.

The software doesn't make any such assumptions or prescriptions.
It uses the systems you configure it to use. If those are what you
consider "test" or "production" then that's what it uses (after a
restart, required for any changes to property fiels).

But of course you have those "catty LDAP logs" you mentioned earlier
on each of your LDAP servers to verify where the LDAP connection is
going. So no guesswork involved, and nothing the software devlopers or
the larger community can help you with.
-peter


More information about the users mailing list