<div dir="ltr">Why not just provide a way for authenticated users to upload metadata to you?  We don't yet have a self-service mechanism for our users to do so, but we do have a "Campus Release Policy" coded into our attribute-filter.  This means all we have to do is add new SP metadata to a single campus-metadata-aggregate & they're good to go.<div><br></div><div>Dave</div></div><div class="gmail_extra"><br><div class="gmail_quote">On Mon, Jun 1, 2015 at 12:51 PM, Liam Hoekenga <span dir="ltr"><<a href="mailto:liamr@umich.edu" target="_blank">liamr@umich.edu</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div dir="ltr"><div>We want to encourage SAML adoption on our campus, but out current SP on-boarding process is very manual.   I'm kind of wondering about releasing ePPN and / or ePTID to anonymous SPs (I'm not even sure if our data stewards or security people would approve, so the point may be moot).</div><div><br></div><div>Has anyone out there enabled anonymous or unverified relying parties on the IdPs?<div>Or is it "just not done"?</div></div><span class="HOEnZb"><font color="#888888"><div><br></div><div>Liam</div></font></span></div>
<br>--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br></blockquote></div><br><br clear="all"><div><br></div>-- <br><div class="gmail_signature"><div dir="ltr"><div>David Langenberg<div>Identity & Access Management Architect</div><div>The University of Chicago</div></div></div></div>
</div>