PersistentNameIDGenerationConfiguration: Type 4 UUID

Hugo Slavia hugoslavia101 at gmail.com
Thu Jan 25 20:55:29 EST 2018


Something odd ---

Uncommenting 'idp.persistentId.generator' --- creates HASH for 1st
PERSISTENTID (for that user/SP).  {expected UUID as
'idp.persistentId.computed' is empty property}.

Subsequently upon setting 'DEACTIVATIONDATE to sysdate-1' -- UUID created
for that user/SP). {expected}

Due to an annoying DB client caching (non-Shib related) -- I was thrown off
tangent for a few hours and fatigue -- so wondering have I missed something
obvious.....

# Set to an empty property to skip hash-based generation of first stored ID
idp.persistentId.computed =
idp.persistentId.generator = shibboleth.StoredPersistentIdGenerator
idp.persistentId.dataSource = OracleDataSource
idp.persistentId.sourceAttribute = uid
idp.persistentId.salt = foobar++
#idp.persistentId.store = OracleDataSource

On Wed, Jan 24, 2018 at 1:11 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:

> On 1/24/18, 3:54 PM, "users on behalf of Hugo Slavia" <
> users-bounces at shibboleth.net on behalf of hugoslavia101 at gmail.com> wrote:
>
> > I have set the following (by un-commenting 'idp.persistentId.computed'
> and setting to empty value) --- however the 1st > PERSISTENTID value is
> still hash (new account --- never user before) --- did I miss something
> else (IdPv3.3.3).
>
> You left the persistentId.generator property commented and it's just
> defaulting to the usual strategy.
>
> -- Scott
>
>
>
>
>
> --
> For Consortium Member technical support, see https://wiki.shibboleth.net/
> confluence/x/coFAAg
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20180125/44e95bac/attachment.html>


More information about the users mailing list