IDPv3 with ADFSv3 proxy

Christopher Bland chris at fdu.edu
Fri Aug 16 09:54:35 EDT 2019


Hi Scott,

Forget to ask for clarity, my approach of ignoring the context won't work?

-Chris

On 8/16/19, 9:52 AM, "users on behalf of Christopher Bland" <users-bounces at shibboleth.net on behalf of chris at fdu.edu> wrote:

    Hi Scott,
    
    Thanks for the quick response. While I need to fix this as quickly as possible, I want figure out what the best practice is.  I quoted you because in the old post you basically said they were bad approaches and I wanted readers to know they had been looked at.
    
    Is redeclaring and overriding the supported classes what you did at OSU?
    
    -Chris
    
    On 8/16/19, 9:19 AM, "users on behalf of Cantor, Scott" <users-bounces at shibboleth.net on behalf of cantor.2 at osu.edu> wrote:
    
        I realized your confusion is probably that you're not getting that the Password flow already contains all the defaulted context classes in a system file (system/conf/general-authn-system.xml I think) where the supportedPrincipals property is (also) defined. You can't merge in "just one" more, you have to redeclare and include all of the values plus your own if you override the property. Other than that it's simple.
        
        -- Scott
        
        
        -- 
        For Consortium Member technical support, see https://wiki.shibboleth.net/confluence/x/coFAAg
        To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
        
    
    -- 
    For Consortium Member technical support, see https://wiki.shibboleth.net/confluence/x/coFAAg
    To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net



More information about the users mailing list