idp DiscoFeed?
Janne Lauros
janne.lauros at csc.fi
Fri Dec 15 07:34:08 UTC 2023
>How are folks doing discovery with an IdP running as a proxy (using the authn/SAML login method)?
>If my organization only wanted proxied logins to happen via an InCommon partner, I could simply set my discoveryUrl to "https://wayf.incommonfederation.org/DS/WAYF", but I want to be able to provide users the ability to log in via >other IdPs as well - ones that are not part of that federation. So I'm looking for something like using the embedded discovery service which pulls its feed from the IdP...
In our proxies we run as first authentication flow a discovery flow (has nothing to do with SAML2 DS) that lets user to select between upstream saml2 federations, saml2 entities, oidc OPs and some local authentication methods like password.
BR Janne
--
For Consortium Member technical support, see https://shibboleth.atlassian.net/wiki/x/ZYEpPw
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
More information about the users
mailing list