Shibboleth IdP MDQ caching duration

Guillaume Rousse guillaume.rousse at renater.fr
Tue Apr 25 09:07:05 UTC 2023


Le 24/04/2023 à 17:26, Cantor, Scott a écrit :
>> But I does not understand how is computed this "initially determined
>> refresh time". I suppose it is server-side provided cacheDuration, when
>> available, when what happens when there is not such value ?
> 
> The cacheDuration comes from the server (literally in the document obviously). There is a default value used if there isn't one specified (maxCacheDuration).
OK. So, if I understand correctly:
- if cacheDuration is provided, metadata is cached for 
refreshDelayFactor * cacheDuration, with a minimum of minCacheDuration 
and a maximum of maxCacheDuration
- if cacheDuration is not provided, metadata is cached for maxCacheDuration

Am I correct ?

Regards
-- 
Guillaume Rousse
Direction des Services Applicatifs
RENATER - Paris
Tel: +33 1 53 94 20 45
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 2256 bytes
Desc: Signature cryptographique S/MIME
URL: <http://shibboleth.net/pipermail/users/attachments/20230425/65a90bd2/attachment.p7s>


More information about the users mailing list