Shibboleth IdP HA

El Manaa Amine amine.elmanaa.ext at i-city.brucity.be
Thu Aug 17 15:22:55 UTC 2023


Thanks for your answer!
Can you please share the reference documentation for a HA setup? I decided to enable session stickiness when I noticed the session management so would be nice to cross-check with a reference documentation to make sure I'm not missing anything.

Also, I saw in the documentation that there are multiple store options such as database (https://shibboleth.atlassian.net/wiki/spaces/IDP4/pages/1265631707/StorageConfiguration#Storage-Implementations). When to use a storage option over another? Does it play a role when you have a HA setup? I couldn't find an answer

-----Original Message-----
From: Cantor, Scott <cantor.2 at osu.edu> 
Sent: jeudi 17 août 2023 17:15
To: Shib Users <users at shibboleth.net>
Cc: El Manaa Amine <amine.elmanaa.ext at i-city.brucity.be>
Subject: Re: Shibboleth IdP HA

[You don't often get email from cantor.2 at osu.edu. Learn why this is important at https://aka.ms/LearnAboutSenderIdentification ]

> Given that Shibboleth IdP manages sessions, I've enabled session 
> stickiness on the Application Load Balancer.

As our documentation explains, the requirement for stickiness only extends to a single conversation/transaction, not across them. Whether that translates into more flexible options depends on your architecture but it's a very different requirement technically.

-- Scott







More information about the users mailing list