Restricting access to a Service Provider on the IdP side

Mak, Steven makst at upenn.edu
Tue Nov 15 14:29:06 UTC 2022


Assuming this is SP metadata coming from an aggregate, we always just use a MetadataFilter on our metadataProvider that pulls the SP in to remove the SP from the aggregate on load.

If not, simply removing their SP metadata will do the trick.

- Steve

On 11/15/22, 9:27 AM, "users on behalf of Ulf Seltmann" <users-bounces at shibboleth.net on behalf of ulf.seltmann at hmt-leipzig.de> wrote:

    Hello,

    we need to restrict access to an SP on IdP-Side. I found a thread from
    5 years ago[1]. So far so good, but what it does not explain is how to
    wire the bean into the relying-party.xml.

    Can anybody enlight me please or point me to an example which i can
    adapt?

    [1]: http://shibboleth.net/pipermail/users/2017-February/034245.html

    cheers
    -- 
    Ulf Seltmann
    System-Administrator

    Hochschule für Musik und Theater Leipzig
    IT-Dienste
    Grassistraße 8 | 04107 Leipzig
    Tel.: +49 341 2144 681
    ulf.seltmann at hmt-leipzig.de | www.hmt-leipzig.de



More information about the users mailing list