<div dir="ltr">Thanks Scott. I'll pass along this information to the IdP contact.</div><div class="gmail_extra"><br><div class="gmail_quote">On Mon, Aug 24, 2015 at 5:11 PM, Cantor, Scott <span dir="ltr"><<a href="mailto:cantor.2@osu.edu" target="_blank">cantor.2@osu.edu</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><span class="">On 8/24/15, 4:55 PM, "users on behalf of Tony Autin" <<a href="mailto:users-bounces@shibboleth.net">users-bounces@shibboleth.net</a> on behalf of <a href="mailto:tony.autin@innosoft.ca">tony.autin@innosoft.ca</a>> wrote:<br>
><br>
>I've reviewed the metadata from my site, just to see if I could find this text (in plain text), but I didn't have any luck.<br>
<br>
</span>The text is the IdP's placeholder text when there's nothing in the metadata, I believe.<br>
<span class=""><br>
>Do you know where I need to go to configure this text?<br>
<br>
</span>The standardized metadata extension(s) that drive the IdP are defined in [1] and give you a number of elements that you can use to communicate about the service.<br>
<br>
The SP is not designed to provide metadata that somebody else directly consumes, that's what federations like InCommon are for. Your metadata, if not handled through a federation, should be maintained separately and cannot be generated on the fly. Doing so is fundamantally broken and prevents proper key rollover. So the answer is that you put the extensions you want into the metadata whereever you happen to maintain it, so it depends on how that's being done. InCommon has support for these extensions in the online interface for managing the metadata, and other federations have similar or different mechanisms for that.<br>
<span class=""><br>
> Is it a line that I need to add to the shibboleth2.xml file?<br>
<br>
</span>The only way to include extensions in the generated metadata, which you absolutely 100% under no circumstances should be using in production, is to embed the extension XML content inside the <Handler> element that configures the metadata generation handler, which is documented in the wiki.<br>
<br>
-- Scott<br>
<br>
[1] <a href="https://wiki.oasis-open.org/security/SAML2MetadataUI" rel="noreferrer" target="_blank">https://wiki.oasis-open.org/security/SAML2MetadataUI</a><br>
<span class="HOEnZb"><font color="#888888">--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br>
</font></span></blockquote></div><br><br clear="all"><div><br></div>-- <br><div class="gmail_signature"><div dir="ltr"><div>Tony Autin<br>Director, Implementation and Special Projects<br><div>1-888-510-3827 EXT 705<br><div><a href="mailto:tony.autin@innosoft.ca" target="_blank">tony.autin@innosoft.ca</a><br><a href="http://www.innosoft.ca" target="_blank">www.innosoft.ca</a></div></div><div><br></div></div></div></div>
</div>