<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=us-ascii">
<meta name="Generator" content="Microsoft Exchange Server">
<!-- converted from rtf -->
<style><!-- .EmailQuote { margin-left: 1pt; padding-left: 4pt; border-left: #800000 2px solid; } --></style>
</head>
<body>
<font face="Calibri" size="2"><span style="font-size:11pt;">
<div>Hi,</div>
<div> </div>
<div>We’re trying to solve a problem using Shibboleth SP.</div>
<div>We have two IDPs to connect to, both with their own (=different) entityID, metdata, signing algorithm, session initiator, AuthnRequest (for example authnContextClassRef PasswordProtected or other).</div>
<div>For now we also have to register at the two IDPs with two different entityIDs for the SP. (I understand from Scott that is not very wise!, but I’m not able to change that in the near future <font face="Wingdings">L</font>)</div>
<div>The certificate and key from our SP can be reused for “both” SPs.</div>
<div> </div>
<div>But with those given parameters, what seems to be the best way to go to solve this problem?</div>
<div> </div>
<div>Do we need to use the ApplicationOverride? Or is it possible to do it with RelyingParty(s), combined with two SessionInitiators?</div>
<div> </div>
<div>Best Regards,</div>
<div>Helma.</div>
<div> </div>
</span></font>
</body>
</html>