<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=us-ascii">
<meta name="Generator" content="Microsoft Exchange Server">
<!-- converted from rtf -->
<style><!-- .EmailQuote { margin-left: 1pt; padding-left: 4pt; border-left: #800000 2px solid; } --></style>
</head>
<body>
<font face="Calibri" size="2"><span style="font-size:11pt;">
<div>Hi,</div>
<div>&nbsp;</div>
<div>We&#8217;re trying to solve a problem using Shibboleth SP.</div>
<div>We have two IDPs to connect to, both with their own (=different) entityID, metdata, signing algorithm, session initiator, AuthnRequest (for example authnContextClassRef PasswordProtected or other).</div>
<div>For now we also have to register at the two IDPs with two different entityIDs for the SP. (I understand from Scott that is not very wise!, but I&#8217;m not able to change that in the near future <font face="Wingdings">L</font>)</div>
<div>The certificate and key from our SP can be reused for &#8220;both&#8221; SPs.</div>
<div>&nbsp;</div>
<div>But with those given parameters, what seems to be the best way to go to solve this problem?</div>
<div>&nbsp;</div>
<div>Do we need to use the ApplicationOverride? Or is it possible to do it with RelyingParty(s), combined with two SessionInitiators?</div>
<div>&nbsp;</div>
<div>Best Regards,</div>
<div>Helma.</div>
<div>&nbsp;</div>
</span></font>
</body>
</html>