<div dir="ltr"><div style="font-family:arial,sans-serif;font-size:13px">I have gone through the Shibboleth documentation and configured following components:</div><div style="font-family:arial,sans-serif;font-size:13px"><br>
</div><div style="font-family:arial,sans-serif;font-size:13px">1. Installed Tomcat6, deployed idp.war and followed required steps</div><div style="font-family:arial,sans-serif;font-size:13px">2. Now, I am able to ping the following link and it gives "OK"</div>
<div style="font-family:arial,sans-serif;font-size:13px"><br></div><div style="font-family:arial,sans-serif;font-size:13px"><a href="https://vmhydstatxp-01.apac.progress.com:8443/idp/profile/Status" target="_blank">https://vmhydstatxp-01.apac.progress.com:8443/idp/profile/Status</a><br>
</div><div style="font-family:arial,sans-serif;font-size:13px"><br></div><div style="font-family:arial,sans-serif;font-size:13px">3. I have generated metadata file for my SP (i.e. My own REST application)</div><div style="font-family:arial,sans-serif;font-size:13px">
4. The question is how can I get my SP's metadata registered with the IDP?</div><div style="font-family:arial,sans-serif;font-size:13px"><br></div><div style="font-family:arial,sans-serif;font-size:13px">The documentation says about <b>Load SAML Metadata for the SP's</b></div>
<div style="font-family:arial,sans-serif;font-size:13px"><br></div><div style="font-family:arial,sans-serif;font-size:13px">Does it mean to copy SP's metadata into relying-party.xml (@ $IDP_HOME/conf/)</div><div style="font-family:arial,sans-serif;font-size:13px">
<br></div><div style="font-family:arial,sans-serif;font-size:13px">5. Do I need to make any changes to IDP's metadata (@ $IDP_HOME/metadata) to communicate with SP</div><div style="font-family:arial,sans-serif;font-size:13px">
<br></div><div style="font-family:arial,sans-serif;font-size:13px">Please help. I have attached SP's metadata for reference.</div><div style="font-family:arial,sans-serif;font-size:13px"><br></div><div style="font-family:arial,sans-serif;font-size:13px">
Thanks,</div><div style="font-family:arial,sans-serif;font-size:13px">Srinivas Munigala.</div></div><div class="gmail_extra"><br><br><div class="gmail_quote">On Mon, Mar 3, 2014 at 9:11 PM, Cantor, Scott <span dir="ltr"><<a href="mailto:cantor.2@osu.edu" target="_blank">cantor.2@osu.edu</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div class="">On 3/3/14, 10:37 AM, "Cantor, Scott" <<a href="mailto:cantor.2@osu.edu">cantor.2@osu.edu</a>> wrote:<br>
><br>
>>How does the client authenticate to the IdP?<br>
>>How does the REST service pass the client session to the IdP for SAML<br>
>>AuthN ?<br>
><br>
>The first is answered by the ECP specification.<br>
<br>
</div>Actually, rereading that, the first answer is that it's somewhat<br>
implementation dependent, but that in practice it's basic-auth generally.<br>
In principle it can be anything supported by HTTP and the client and web<br>
server.<br>
<span class="HOEnZb"><font color="#888888"><br>
-- Scott<br>
</font></span><div class="HOEnZb"><div class="h5"><br>
<br>
--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br>
</div></div></blockquote></div><br></div>