F5 Access Policy Manager

Peter Schober peter.schober at univie.ac.at
Fri Apr 13 12:10:09 EDT 2018


* Robert Lowe <robertmlowe at rmlowe.com> [2018-04-13 11:45]:
> Has anyone successfully integrated the Shibboleth SP with the above?

I'd be surprised if the Shib SP couldn't be made to work with a SAML
IDP that's even remotely compliant.

But I have not done this so far. A co-worker considered using the F5
as SAML IDP (since most of the interesting things it can do require
impersonating the subject and having access to her password) but I'd
rather limit the number of SAML IDPs to be run within the same
organization -- and clearly the F5 cannot replace a full-blown
Shibboleth IDP when used in the kind of large-scale, multi-party
federations many deployers rely on.

(You didn't specifally ask about the capabilities of the F5 as SAML
IDP but the above may still explain the lack of responses so far.)

-peter


More information about the users mailing list