<br><font size=2 face="sans-serif">Hi, </font>
<br>
<br><font size=2 face="sans-serif">I have configured my Shibboleth IDP
and Shibboleth SP. I am being redirected to Shibboleth IDP Login
page when I hit </font><a href=https://localhost/Shibboleth.sso/Login><font size=2 face="sans-serif">https://localhost/Shibboleth.sso/Login</font></a><font size=2 face="sans-serif">
page. On successful login I am being redirected to my application page
which I have configured in Shibboleth2.xml file as homeURL:</font><a href=https://localhost:7006/Url.jsp><font size=2 face="sans-serif">https://localhost:7006/Url.jsp</font></a><font size=2 face="sans-serif">.</font>
<br>
<br><font size=2 face="sans-serif">My application is being protected by
Spring 2 framework. I have configured Pre Auth filter of spring to retrieve
REMOTE_USER attribute from the HTTP header. But I am not able to
get this attribute from the header. </font>
<br>
<br><font size=2 face="sans-serif">I have configured one attribute as follows
:</font>
<br><font size=2 face="sans-serif">Rule:</font>
<br><font size=2 face="sans-serif"> <afp:AttributeFilterPolicy
id="releaseTransientIdToAnyone"></font>
<br><font size=2 face="sans-serif"> <afp:PolicyRequirementRule
xsi:type="basic:ANY"/></font>
<br>
<br><font size=2 face="sans-serif"> <afp:AttributeRule
attributeID="transientId"></font>
<br><font size=2 face="sans-serif">
<afp:PermitValueRule xsi:type="basic:ANY"/></font>
<br><font size=2 face="sans-serif"> </afp:AttributeRule></font>
<br><font size=2 face="sans-serif">
<afp:AttributeRule attributeID="uid"></font>
<br><font size=2 face="sans-serif">
<afp:PermitValueRule xsi:type="basic:ANY"/></font>
<br><font size=2 face="sans-serif"> </afp:AttributeRule></font>
<br>
<br><font size=2 face="sans-serif"> </afp:AttributeFilterPolicy></font>
<br>
<br><font size=2 face="sans-serif">Attr resover:</font>
<br>
<br><font size=2 face="sans-serif"><resolver:AttributeDefinition xsi:type="ad:Simple"
id="uid" sourceAttributeID="uid"></font>
<br><font size=2 face="sans-serif">
<resolver:Dependency ref="mySIS"
/></font>
<br><font size=2 face="sans-serif"> <resolver:AttributeEncoder
xsi:type="enc:SAML1String" name="urn:mace:dir:attribute-def:uid"
/></font>
<br><font size=2 face="sans-serif"> <resolver:AttributeEncoder
xsi:type="enc:SAML2String" name="urn:oid:0.9.2342.19200300.100.1.1"
friendlyName="uid" /></font>
<br><font size=2 face="sans-serif"> </resolver:AttributeDefinition></font>
<br>
<br>
<br>
<br><font size=2 face="sans-serif"><resolver:DataConnector id="mySIS"
xsi:type="dc:RelationalDatabase"></font>
<br><font size=2 face="sans-serif"> <dc:ApplicationManagedConnection
jdbcDriver="oracle.jdbc.driver.OracleDriver"</font>
<br><font size=2 face="sans-serif">
jdbcURL="jdbc:oracle:thin:@01hw466242:1521:pbstg"</font>
<br><font size=2 face="sans-serif">
jdbcUserName="ess_admin"</font>
<br><font size=2 face="sans-serif">
jdbcPassword="ESS_321" /></font>
<br><font size=2 face="sans-serif"> <dc:QueryTemplate></font>
<br><font size=2 face="sans-serif">
<![CDATA[</font>
<br><font size=2 face="sans-serif">
SELECT * FROM SEC_USER_MST WHERE USERNAME = '$requestContext.principalName'</font>
<br><font size=2 face="sans-serif">
]]></font>
<br><font size=2 face="sans-serif"> </dc:QueryTemplate></font>
<br>
<br><font size=2 face="sans-serif"> <dc:Column
columnName="USERID" attributeID="uid" /></font>
<br><font size=2 face="sans-serif"> <dc:Column
columnName="USERNAME" attributeID="uname" /></font>
<br><font size=2 face="sans-serif"> </resolver:DataConnector></font>
<br>
<br><font size=2 face="sans-serif">SHibboleth2.xml</font>
<br>
<br><font size=2 face="sans-serif"><ApplicationDefaults entityID="</font><a href=https://localhost:9001/shibboleth><font size=2 face="sans-serif">https://localhost:9001/shibboleth</font></a><font size=2 face="sans-serif">"</font>
<br><font size=2 face="sans-serif">
homeURL="</font><a href=https://localhost:9001/DigiGOV><font size=2 face="sans-serif">https://localhost:9001/DigiGOV</font></a><font size=2 face="sans-serif">"</font>
<br><font size=2 face="sans-serif">
REMOTE_USER="eppn
targeted-id" </font>
<br><font size=2 face="sans-serif">
></font>
<br>
<br><font size=2 face="sans-serif">I have configured proxy pass from /DigiGOV
to </font><a href=https://localhost:7006/User.jsp><font size=2 face="sans-serif">https://localhost:7006/User.jsp</font></a>
<br>
<br>
<br><font size=2 face="sans-serif">I have confiured ShibbolethHeader On
in apache22.config file. Still the REMOTE_USER is missing from the header.
</font>
<br>
<br><font size=2 face="sans-serif">Please let me know how to use Shibboleth
IDP and Shibboleth SP for Authentication in my application. Further how
can I get attribute from the Shibboleth SP.</font>
<br>
<br>
<br><font size=2 face="sans-serif">Thanks.</font>
<br><font size=2 face="sans-serif"><br>
Regards,<br>
Hardik Jagatkumar Sheth<br>
Tata Consultancy Services<br>
Ph:- 9107966712785<br>
Buzz:- 4792785<br>
Cell:- +919879324464<br>
Mailto: h.sheth@tcs.com<br>
Website: </font><a href=http://www.tcs.com/><font size=2 face="sans-serif">http://www.tcs.com</font></a><font size=2 face="sans-serif"><br>
____________________________________________<br>
Experience certainty. IT Services<br>
Business Solutions<br>
Consulting<br>
____________________________________________</font><p>=====-----=====-----=====<br>
Notice: The information contained in this e-mail<br>
message and/or attachments to it may contain <br>
confidential or privileged information. If you are <br>
not the intended recipient, any dissemination, use, <br>
review, distribution, printing or copying of the <br>
information contained in this e-mail message <br>
and/or attachments to it are strictly prohibited. If <br>
you have received this communication in error, <br>
please notify us by reply e-mail or telephone and <br>
immediately and permanently delete the message <br>
and any attachments. Thank you</p>
<p></p>