<div>Thanks a lot Scott.... <img src="cid:ezweb_ne_jp.330@goomoji.gmail" style="margin: 0px 0.2ex; vertical-align: middle; " goomoji="ezweb_ne_jp.330"></div><div><br></div>What i understand from your suggession as follows,<div>

<br></div><div>When the user trying to access the secure folder/app (in my case <a href="http://clientx.domainname.com/application">clientx.domainname.com/application</a>) then it&#39;s has to redirect to the idp login page here user needs to select their own idp from the list after authentication process request will be redirected to original URL (<a href="http://clientx.domainname.com/application">clientx.domainname.com/application</a>) right. Now working like this for the single client.  But i want to use Single SP for my rest of the clients. Please confirm me one thing, if i use applicationoverride in my shibboleth then will it work perfectly?<div>

<br></div><div>- Raja Sekhar G. <div><div><div><br><div class="gmail_quote">On Sun, Oct 28, 2012 at 3:04 AM, Cantor, Scott <span dir="ltr">&lt;<a href="mailto:cantor.2@osu.edu" target="_blank">cantor.2@osu.edu</a>&gt;</span> wrote:<br>

<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div class="im">On 10/27/12 5:27 PM, &quot;Raz&#39;s&quot; &lt;<a href="mailto:gajula.rajashekhar@gmail.com">gajula.rajashekhar@gmail.com</a>&gt; wrote:<br>


&gt;<br>
&gt;So can you suggest me other alternative(with any slightly modification<br>
&gt;wrt you view) to fulfill my requirement.<br>
<br>
</div>The best option is not to try and avoid discovery. That&#39;s a cost of<br>
supporting federation, and users should interact with the system to select<br>
their IdP.<br>
<br>
The second best option is to use path or query string information to<br>
trigger the IdP selection instead of the hostname, but route all traffic<br>
back through the same URLs and resources. If the system has to be<br>
compartmentalized by IdP, that should be done by the application itself<br>
based on the data that is available for the authenticated session.<br>
<div class="HOEnZb"><div class="h5"><br>
-- Scott<br>
<br>
<br>
--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br>
</div></div></blockquote></div><br></div></div></div></div></div>