IDPv3 with ADFSv3 proxy
Christopher Bland
chris at fdu.edu
Fri Aug 16 09:52:24 EDT 2019
Hi Scott,
Thanks for the quick response. While I need to fix this as quickly as possible, I want figure out what the best practice is. I quoted you because in the old post you basically said they were bad approaches and I wanted readers to know they had been looked at.
Is redeclaring and overriding the supported classes what you did at OSU?
-Chris
On 8/16/19, 9:19 AM, "users on behalf of Cantor, Scott" <users-bounces at shibboleth.net on behalf of cantor.2 at osu.edu> wrote:
I realized your confusion is probably that you're not getting that the Password flow already contains all the defaulted context classes in a system file (system/conf/general-authn-system.xml I think) where the supportedPrincipals property is (also) defined. You can't merge in "just one" more, you have to redeclare and include all of the values plus your own if you override the property. Other than that it's simple.
-- Scott
--
For Consortium Member technical support, see https://wiki.shibboleth.net/confluence/x/coFAAg
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
More information about the users
mailing list