Community,<br><br> Being new to the Shibboleth world, I hope this question is not too basic.<br><br> We've just put together our first SP server (Shibboleth 2.52 on RHEL 5.9)<br> to protect a service application for our customers.<br>
<br> Following the WiKi docs, we think we have most everything ready. As a SP<br> Provider, we will need a metadata file for the customer IdP servers.<br><br> We used something like this URL to see what our customers would see:<br>
<br> <a href="https://metaserve.example.com/Shibboleth.sso/Metadata">https://metaserve.example.com/Shibboleth.sso/Metadata</a><br><br> At the very top of the generated file is this warning:<br><br> <!--<br>
This is example metadata only. Do *NOT* supply it as is without review, and do *NOT* provide it in real time to your partners.<br> --><br><br> Wow. OK. Then we went back to the WiKi and found these:<br><br> <a href="https://wiki.shibboleth.net/confluence/display/SHIB2/MetadataForSP">https://wiki.shibboleth.net/confluence/display/SHIB2/MetadataForSP</a><br>
<br> and this:<br><br> <a href="https://wiki.shibboleth.net/confluence/display/SHIB2/NativeSPHandler#NativeSPHandler-MetadataGenerationHandler">https://wiki.shibboleth.net/confluence/display/SHIB2/NativeSPHandler#NativeSPHandler-MetadataGenerationHandler</a><br>
<br> <br>This seems like a very complicated file. We certainly do not want to get it wrong.<br><br> Is there a general "Metadata Generator" out here that will look at our<br> shibboleth2.xml, attribute-map, etc., and make a better attempt at a "good"<br>
metadata file?<br><br> Failing that, since some day we might want to apply to a Federation (doing<br> just one metadata is fine with us), is there an accepted format/template we<br> can download as a starting point? Or are there examples of what would be<br>
considered best practice Metadata files?<br><br> Another seemingly silly question. Once we get the file the way we want it,<br> where is it supposed to go in the file structure?<br><br> The URL:<br><br> <a href="https://metaserve.example.com/Shibboleth.sso/Metadata">https://metaserve.example.com/Shibboleth.sso/Metadata</a><br>
<br> seems to be just a handler. There is no "Metadata" file in the file tree to<br> edit/replace.<br><br> After we perfect the metadata file, how do we "update" the existing version<br> so the the customer IdP servers see the updated metadata?<br>
<br><br> Thank you very much everyone!<br><br><br clear="all"><div>-- RGS<br><br>==================================<br>Roy G. Specter<br><a href="mailto:roygspectech8@gmail.com" target="_blank">roygspectech8@gmail.com</a><br>
========================================<br></div>