Cognos SSO
Peter Schober
peter.schober at univie.ac.at
Thu Oct 18 12:18:17 EDT 2018
* Oakley, Robert <rloakle at ilstu.edu> [2018-10-18 18:03]:
> Sorry for the confusion. I meant to say our IDP SAML 2.0 with IBM
> ID. It's not desirable from some folks on our side due to the
> having to sign into the IBM page with one's email address before
> being redirected to our SSO page.
>
> We have federated our domain with IBM, and I am just waiting on
> getting the client identifier & client secret key from IBM.
> Apparently it's something they have not done yet with self-hosted
> customers.
Sorry, I don't understand any of this and so can't help there.
> A more desirable solution is to implement our Cognos environment
> behind Shibboleth. I'm just not sure exactly how to do this. I'm
> the Cognos administrator and have been for years, but I'm not sure
> how to tie it in with our Shibboleth solution?
You could start by pointing them to the resources I have already
referenced/summarized for your convenience in my previous post. That
should get them up and running rather quickly. Also note that the
Shibboleth integration is the easier of the parts, the LDAP
integration (which you'll need in addition to SAML) is the more
complex part, esp since noone having done this ever bothered to do a
complete write-up.
But the threads I referenced should get you there.
-peter
More information about the users
mailing list