Thanks Scott.  I take it that I can then ask the people who manage the IdP to release some additional attributes for an existing entityID?  Once they are released I can make them available by configuring the attribute-map.xml file.<div>
<br></div><div>Tonu<br><br><div class="gmail_quote">On Tue, Sep 6, 2011 at 3:57 PM, Cantor, Scott <span dir="ltr">&lt;<a href="mailto:cantor.2@osu.edu">cantor.2@osu.edu</a>&gt;</span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex;">
<div class="im">On 9/6/11 4:48 PM, &quot;Tonu Mikk&quot; &lt;<a href="mailto:tmikk@umn.edu">tmikk@umn.edu</a>&gt; wrote:<br>
<br>
&gt;I would like to configure our SP for authentication and also attribute<br>
&gt;retrieval.  A user would authenticate and upon successful authentication<br>
&gt;the web server would have access to some additional attributes.<br>
<br>
</div>That&#39;s the standard approach and is &quot;the normal way&quot; of using the SP.<br>
<div class="im"><br>
&gt;So far I have configured shibboleth2.xml and metadata file to work with<br>
&gt;our IdP and provide authentication.  I am now looking to configure these<br>
&gt;two files so that I can retrieve attributes.   Do I need to create a new<br>
&gt;entity ID in order to retrieve attributes?<br>
<br>
</div>No, you just need to configure the IdP to release the attributes you want<br>
or ask that it be done.<br>
<div class="im"><br>
&gt;For metadata configuration I am referencing this guide:<br>
&gt;<a href="https://wiki.shibboleth.net/confluence/display/SHIB2/MetadataForSP#Metadat" target="_blank">https://wiki.shibboleth.net/confluence/display/SHIB2/MetadataForSP#Metadat</a><br>
&gt;aForSP-AssertionConsumerServices .  I understand that I would need to<br>
&gt;manually create entries like this in the metadata.  How would I know the<br>
&gt;Name and NameFormat that I would need to reference?<br>
<br>
</div>All of that is largely irrelevant to initially testing out this kind of<br>
thing. The decision on what to release is generally the IdP&#39;s to make.<br>
More dynamic scenarios are far beyond what you want to deal with based on<br>
the questions you&#39;re asking.<br>
<br>
-- Scott<br>
<font color="#888888"><br>
--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br>
</font></blockquote></div><br><br clear="all"><div><br></div>-- <br><span style="border-collapse:collapse;font-family:arial, sans-serif;font-size:13px"><div>Tonu Mikk</div><div>Disability Services, Office for Equity and Diversity</div>
<div>612 625-3307</div><div><a href="mailto:tmikk@umn.edu" target="_blank">tmikk@umn.edu</a></div></span><br>
</div>