How shibboleth idp verify existing session.

Divya Shirodkar divya.shirodkar at gslab.com
Tue Mar 21 05:23:52 EDT 2017


Hi ,
Following is the scenario  :
I have 2 sp's configured for 1 application say sp1 and sp2 both are
protected by single idp .We have added support for two authentication
methods simultaneously 1.Password authentication
2.External authentication .

Flow :
1.User hits application via sp1 ,user asked for authentication and idp
session is created.(using External authentication)
2.User next hits the application via sp2 and is redirected to idp login
page .(Password authentication)

Though idp session existsin step 2 user is asked for authentication.It
should take the existing session created in step 1 at the time of external
authentication.

So could you please tell me hows shibboleth verifies the existing session
which makes SSO work .
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20170321/fa68248e/attachment.html>


More information about the users mailing list