Using shibboleth.authn.SAML.discoveryFunction

Vincent Feyaerts vincent.feyaerts at uantwerpen.be
Wed Apr 7 11:50:10 UTC 2021


Hi,

 

Is there an example somewhere, or can somebody provide a very basic one, of
the use of shibboleth.authn.SAML.discoveryFunction in Idp 4.1? I'm afraid I
don't really know where to start writing this "function", or what it should
look like.

 

What I'm trying to do is to send the client to one or another SAML Proxy
IdP, based on the SP EntityId and/or other parameters. This is for a test
scenario where our Shib IdP is defined twice as a SAML application in Azure
AD, where MFA will be enabled on only one of these. This way, we can decide
to have MFA on some Shibboleth SP but not on all or none.

 

Thanks in advance

Vincent Feyaerts

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20210407/dc9a3fb0/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 6855 bytes
Desc: not available
URL: <http://shibboleth.net/pipermail/users/attachments/20210407/dc9a3fb0/attachment.p7s>


More information about the users mailing list