I asked the people who manage our IdP to release additional attributes. After they had done so, I accessed <a href="https://mydomain/Shibboleth.sso/Session">https://mydomain/Shibboleth.sso/Session</a> and did not see additional attributes.<div>
<pre><u>Miscellaneous</u>
<strong>Client Address:</strong> 160.94.228.108
<strong>Identity Provider:</strong> <a href="https://idp-test.shib.umn.edu/idp/shibboleth">https://idp-test.shib.umn.edu/idp/shibboleth</a>
<strong>SSO Protocol:</strong> urn:oasis:names:tc:SAML:2.0:protocol
<strong>Authentication Time:</strong> 2011-09-07T18:55:36.151Z
<strong>Authentication Context Class:</strong> urn:oasis:names:tc:SAML:2.0:ac:classes:unspecified
<strong>Authentication Context Decl:</strong> (none)
<strong>Session Expiration (barring inactivity):</strong> 479 minute(s)
<u>Attributes</u>
<strong>eppn</strong>: 1 value(s)
</pre></div><div><br></div><div>On the IdP side, the log shows the following:</div><div><span class="Apple-style-span" style="font-family: arial, sans-serif; font-size: 13px; background-color: rgb(255, 255, 255); ">13:07:11.613 - INFO [Shibboleth-Audit:1015] -<br>
20110907T180711Z|urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect|_ce82006ebb095c399ccc0cbb9eb8c0b3|<a href="https://oedweb.oit.umn.edu/shibboleth/default%7Curn:mace:shibboleth:2.0:profiles:saml2:sso%7Chttps://idp-test.shib.umn.edu/idp/shibboleth%7Curn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST%7C_c73a5fb78f839bcfecc78ec5b2281c67%7Ctmikk%7Curn:oasis:names:tc:SAML:2.0:ac:classes:unspecified%7CumnEmplId,surname,umnDisplayMail,givenName,uid,homePhone,umnPersonType,transientId,umnDID,eduPersonPrincipalName,%7C%7C%7C" target="_blank" style="color: rgb(0, 0, 204); ">https://oedweb.oit.umn.edu/shibboleth/default|urn:mace:shibboleth:2.0:profiles:saml2:sso|https://idp-test.shib.umn.edu/idp/shibboleth|urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST|_c73a5fb78f839bcfecc78ec5b2281c67|tmikk|urn:oasis:names:tc:SAML:2.0:ac:classes:unspecified|umnEmplId,surname,umnDisplayMail,givenName,uid,homePhone,umnPersonType,transientId,umnDID,</a></span><span class="Apple-style-span" style="font-family: arial, sans-serif; font-size: 13px; background-color: rgb(255, 255, 255); "><a href="https://oedweb.oit.umn.edu/shibboleth/default%7Curn:mace:shibboleth:2.0:profiles:saml2:sso%7Chttps://idp-test.shib.umn.edu/idp/shibboleth%7Curn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST%7C_c73a5fb78f839bcfecc78ec5b2281c67%7Ctmikk%7Curn:oasis:names:tc:SAML:2.0:ac:classes:unspecified%7CumnEmplId,surname,umnDisplayMail,givenName,uid,homePhone,umnPersonType,transientId,umnDID,eduPersonPrincipalName,%7C%7C%7C" target="_blank" style="color: rgb(0, 0, 204); ">eduPersonPrincipalName,|||</a></span></div>
<div><font class="Apple-style-span" face="arial, sans-serif"><br></font></div><div><font class="Apple-style-span" face="arial, sans-serif">The log seems to indicate that the attributes were released. Do I need to configure attribute-map.xml file before I can see the released attributes in </font><font class="Apple-style-span" face="arial, sans-serif"><span class="Apple-style-span" style="font-family: arial; "><a href="https://mydomain/Shibboleth.sso/Session">https://mydomain/Shibboleth.sso/Session</a> URL?</span><br>
</font></div><div><br></div><div>Thanks,</div><div>Tonu<br><div class="gmail_quote">On Tue, Sep 6, 2011 at 5:50 PM, Cantor, Scott <span dir="ltr"><<a href="mailto:cantor.2@osu.edu">cantor.2@osu.edu</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex;"><div class="im">On 9/6/11 5:06 PM, "Tonu Mikk" <<a href="mailto:tmikk@umn.edu">tmikk@umn.edu</a>> wrote:<br>
<br>
>Thanks Scott. I take it that I can then ask the people who manage the<br>
>IdP to release some additional attributes for an existing entityID? Once<br>
>they are released I can make them available by configuring the<br>
>attribute-map.xml file.<br>
<br>
</div>Yes. Putting them in metadata does nothing to get them released from the<br>
majority of IdPs unless you're ahead of the curve.<br>
<div><div></div><div class="h5"><br>
-- Scott<br>
<br>
--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br>
</div></div></blockquote></div><br><br clear="all"><div><br></div>-- <br><span style="border-collapse:collapse;font-family:arial, sans-serif;font-size:13px"><div>Tonu Mikk</div><div>Disability Services, Office for Equity and Diversity</div>
<div>612 625-3307</div><div><a href="mailto:tmikk@umn.edu" target="_blank">tmikk@umn.edu</a></div></span><br>
</div>