IdP v4.1.0 as a proxy between OIDC client and SAML Federation

Felipe Cardoso felipepassoscardoso at gmail.com
Fri May 7 22:44:19 UTC 2021


Hi,

I'm trying to implement this scenario:

RP OIDC (Client) -> IdP Proxy (SAML Auth and OIDC Plugin) -> SAML
Federation (IdPs).

1. I Installed and set up the IdP v4.1.0 as a SAML Proxy (SAML Authn) in a
clean installation and a test with SP SAML the flow worked perfectly.

2. I Install and set up the OIDC v3.0.0 Plugin according to the wiki
documentation.
In a test with an OIDC client, authentication works and the id_token is
released.
But no attribute (claim's) is released by the IdP during the query to the
"userinfo" endpoint.
In the log files, no error is generated.

I'm using the c14n / attribute with the eduPersonPrincipalName attribute as
Subject and Transcoding Rule to resolve attributes.

Is it possible to implement this scenario?

Regards,

-- 
Felipe Cardoso
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20210507/025f792e/attachment.htm>


More information about the users mailing list