Impersonate and RemoteAccess

Marco Naimoli marco.naimoli at unipd.it
Thu May 20 11:49:15 UTC 2021


Hi all, sorry, I've found the (forgotten) timeout setting on the RemoteUser
auth side, it was the cause of the
strange behaviour
Thanks
Marco


Il giorno gio 20 mag 2021 alle ore 11:47 Marco Naimoli <
marco.naimoli at unipd.it> ha scritto:

> Hello, I'm using MFA for authentication on my Shibboleth IDP installation;
> it is configured to
> call authn/RemoteUser and then to go on with attribute resolution. It
> works, and some attributes come from authn/RemoteUser http headers (there's
> a reverse proxy apache in front of the shibboleth IDP installation)
> I'm trying to use the impersonate intercept and it works as expected, but
> when I impersonate
> another user after about 20-25 seconds the attributes using the http
> headers are not created again, because those http headers are emptied.
> Before 20-25 seconds there's no problem at all.
> Any suggestion ?
> Shibboleth IDP is a 3.4.6 installation (+jetty), apache a 2.4.x
> Thank you
> Marco
>
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20210520/4149190e/attachment.htm>


More information about the users mailing list