Shibboleth for Adobe.com

Peter Schober peter.schober at univie.ac.at
Wed Jun 13 14:52:31 EDT 2018


* Smith, Michael <smithmich at uhcl.edu> [2018-06-13 20:45]:
> We are running Shibboleth V2 and trying to authenticate to
> Adobe.com. The instructions provided seem to be in a different
> format that what we are using. One section states to add the
> following to our relying-party but it doesn't match our
> formatting. It specifically states add the line with the
> nameIDFormatPrecedence.

Since you'll have to manage local SAML Metadata for that SP anyway
(they don't seem to be part of any federation) it's easier to just add
the required NameID format in a NameIDFormat element there (after any
SingleLogoutService and before AssertionConsumerService elements).

> How would I add this in Shibboleth V2 that does not use bean formatting.

You wouldn't, IDPv2 is EOL for years now.

Other than that the documentation is here:
https://wiki.shibboleth.net/confluence/display/SHIB2/IdPNameIdentifier
and here:
https://wiki.shibboleth.net/confluence/display/SHIB2/IdPRelyingParty

-peter


More information about the users mailing list