[EXTERNAL] RE: Shibboleth IdP SAML with CyberArk SP

Miller, Greg gmiller at richmond.edu
Fri Jan 4 13:31:08 EST 2019


Thanks for the hint. We have it working with the HTTP-Redirect binding. 

Greg

-----Original Message-----
From: users <users-bounces at shibboleth.net> On Behalf Of Cantor, Scott
Sent: Friday, January 4, 2019 11:04 AM
To: Shib Users <users at shibboleth.net>
Subject: [EXTERNAL] RE: Shibboleth IdP SAML with CyberArk SP

> Does anyone have any experience configuring Shibboleth IdP v 3.3.2 
> with CyberArk Password Vault Web Access version 10.5.0.48 as the SP 
> for SAML SSO? In summary, on SP-initiated SSO, CyberArk is sending the 
> authentication request with an HTTP GET and IdP is expecting an HTTP POST.

The IdP doesn't require either one, you pick the binding you want to use and tell the SP which endpoint to use based on that (if it doesn't support metadata). If that SP isn't conformant with any binding, then it won't work.

-- Scott

--
For Consortium Member technical support, see https://wiki.shibboleth.net/confluence/x/coFAAg
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net


More information about the users mailing list