<div dir="ltr"><br><div>Hi Jarno,</div><div><br></div><div>Thanks for the reply. Yes have read the wiki and wanted to know a bit more on the 2 approaches mentioned. For using the same metadata/certs that was not clear from the steps and I thought that each node had to maintain its own metadata/cert info.</div></div><div class="gmail_extra"><br><div class="gmail_quote">On Thu, Jun 11, 2015 at 6:29 PM, Jarno Huuskonen <span dir="ltr"><<a href="mailto:jarno.huuskonen@uef.fi" target="_blank">jarno.huuskonen@uef.fi</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">Hi,<br>
<span class=""><br>
On Thu, Jun 11, NPTabunakawai wrote:<br>
> I have a few questions about clustering in IdP 3. I'd be grateful for any<br>
> feedback as it will help to decide on which approach to take in clustering<br>
> or whether to stick to a single IdP.<br>
<br>
</span>Did you already read:<br>
<a href="https://wiki.shibboleth.net/confluence/display/IDP30/Clustering" rel="noreferrer" target="_blank">https://wiki.shibboleth.net/confluence/display/IDP30/Clustering</a><br>
<span class=""><br>
> - how many shib user sessions can an IdP instance handle?<br>
> - regarding the dns round robin approach, what IdP metadata will be used by<br>
> the SP? Will it use chaining or will metadata from each node be combined<br>
> into one metadata file.<br>
> - how will the certs and signing keys from each node be used ?<br>
<br>
</span>Why would you use different metadata/certs for each idp node ? Why not<br>
just use same metadata/certs for each idp node ?<br>
<br>
-Jarno<br>
<span class="HOEnZb"><font color="#888888"><br>
--<br>
Jarno Huuskonen<br>
--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br>
</font></span></blockquote></div><br></div>