Banner 9 SAML

Tom O'Neill oneill at sigcorp.com
Thu Nov 2 18:34:09 EDT 2017


Yes, the UDC_IDENTIFIER attribute is required but isn't the tricky part of the configuration.

I've had issues with the SAML 2.0 configuration for the Banner 9 components. 
The last time I worked on a full SAML 2.0 stack we had SSO Manager, Application Navigator and a SSB module working but Admin Pages was trouble.
I'd imagine it can be done - we were working with Ellucian Ethos Identity at the time, which isn't my preferred IdP but it didn't seem to be a mature integration yet.

Thanks,

    Tom O'Neill

-----Original Message-----
From: users [mailto:users-bounces at shibboleth.net] On Behalf Of Jorj Bauer
Sent: Thursday, November 02, 2017 3:32 PM
To: Shib Users <users at shibboleth.net>
Subject: Re: Banner 9 SAML

We had a small host of tiny details that had to be divined. The UDCID is critical and reasonably obvious.

I think our initial CAS setup was about 3 weeks of various staff from IAM or the ERP team. Our SAML attempts are probably the same order of magnitude. 

Sent from my iPhone

On Nov 2, 2017, at 14:53, Cantor, Scott <cantor.2 at osu.edu> wrote:

>>> We did get it to work but it's very custom, we had to create the following
>> resolver which is released only to Banner:
> 
> If all it takes is a custom attribute then people need to recalibrate what they think "doesn't work easily" means. You're not going to get much better from a whole lot of vendors.
> 
> -- Scott
> 
> -- 
> For Consortium Member technical support, see https://wiki.shibboleth.net/confluence/x/coFAAg
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
-- 
For Consortium Member technical support, see https://wiki.shibboleth.net/confluence/x/coFAAg
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net


More information about the users mailing list