<div dir="ltr"><br><div class="gmail_extra"><br><div class="gmail_quote">2015-06-03 14:16 GMT+02:00 Tom Scavo <span dir="ltr"><<a href="mailto:trscavo@gmail.com" target="_blank">trscavo@gmail.com</a>></span>:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><span class="">On Wed, Jun 3, 2015 at 4:55 AM, Ondřej Košarko <<a href="mailto:kosarko@ufal.mff.cuni.cz">kosarko@ufal.mff.cuni.cz</a>> wrote:<br>
><br>
> In my configuration of shibboleth sp 2.5.3 I have several MetadataProviders<br>
> (federations), now I need to blacklist some IDPs from some of the<br>
> federations.<br>
<br>
</span>A different set of IdPs from each federation? Are the sets disjoint?<br></blockquote><div><br></div><div>No, these sets are not disjoint, some of the IDPs are member of more than one federation.</div><div><br></div><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
<span class=""><br>
> I know I can add a MetadataFilter to each of the providers element, but I'd<br>
> rather keep the blacklist in one piece. Is that somehow possible?<br>
<br>
</span>I'm not sure why you would want to do that...is the same IdP in<br>
multiple metadata feeds?<br></blockquote><div><br></div><div>Apart from IDPs being in multiple feeds, it seems more manageable and convenient to have just one place where to add or check the blacklist.</div><div> <br></div><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
<span class=""><br>
> I did try to have one "top level" MetadataProvider with type chaining and<br>
> the filter inside this element, but that did not seem to work.<br>
<br>
</span>That doesn't seem too surprising since a chaining MetadataProvider is<br>
mostly syntactic sugar at this point.<br>
<span class="HOEnZb"><font color="#888888"><br>
Tom<br>
--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a></font></span></blockquote></div><br></div></div>