Office 365 + Shibboleth ?

Tom O'Neill oneill at
Thu Oct 12 09:17:24 EDT 2017


I'll check it out - it would be nice to streamline things a bit. We never went live with the second instance due to issues with the Azure account.
This particular institution is still running a separate CAS server using the ShibCas plugin so the CAS session would have tied together the SSO experience.
Just another piece that I'd like to consolidate to a single service rather than running CAS against CAS and SAML 2.0 through Shibboleth with ShibCas.


Tom O’Neill

-----Original Message-----
From: users [mailto:users-bounces at] On Behalf Of Peter Schober
Sent: Thursday, October 12, 2017 9:11 AM
To: users at
Subject: Re: Office 365 + Shibboleth ?

* Tom O'Neill <oneill at> [2017-10-12 13:27]:
> We ended up deploying a second IdP instance using a different port, which made the entity ID unique.
> I looked at doing something dynamic with a single instance but felt it 
> was potentially too involved and I didn’t have the time to spend on 
> it.

The documentation should cover the case of using a separate entityID value with specific RelyingParties. Should be a simple configuration change, definitively less involved (and fully supported) than running a separate IDP instance (and giving up on SSO, too, with 2 IDPs).
To unsubscribe from this list send an email to users-unsubscribe at

More information about the users mailing list