Configuring Shibboleth v3 IdP for Unsolicited SSO (IdP Initiated SSO)

Nate Klingenstein ndk at signet.id
Tue Jan 15 14:29:53 EST 2019


> If they want assertions signed rather than requests, you will need to modify relying-party.xml after all.  See signAssertions versus signRequests here:
> 
> https://wiki.shibboleth.net/confluence/display/IDP30/SAML2SSOConfiguration

Pardon me, that should be responses and signResponses.

The garbled URL's in the email aren't relevant or part of the problem, though they would surely be in the metadata file itself.


More information about the users mailing list