Issues NonParticipant using Federation Metadata?

Tom Scavo trscavo at gmail.com
Wed Mar 21 13:55:58 EDT 2018


Hi Dan,

Coming back to this since I now have an alternative suggestion. See below.

On Thu, Nov 2, 2017 at 2:26 PM, Dan Malone <dmalone at calpoly.edu> wrote:
>
> From this vendors documentation:
>
> IRBManager automatically accepts IdPs published in the InCommon Federation’s
> metadata list, and we can add other metadata sources upon request. Our
> security metadata XML is available at
> https://shibboleth.irbmanager.com/metadata.xml.

Is this documentation online? If so, can you provide a link?

> On the SP side, the SP is consuming InCommon metadata and therefore can get
> our IDPs metadata given our entityID.
> On the IDP side, I consume their SP metadata directly (not via InCommon) and
> the SP entityID.
>
> Not all configured yet, but this seems like it should work.
> Am I missing anything?

No, you're not missing anything. There are multiple options that
roughly divide themselves into "trusted metadata" and "untrusted
metadata." I'm not sure how you ended up solving this problem but I
documented an option for untrusted metadata in the wiki:
https://wiki.shibboleth.net/confluence/x/FoWqAg

If you have questions, let me know.

Tom


More information about the users mailing list