<div dir="ltr"><div>Yeah I did forgot that you suggested this. Anyway, can anyone be clear and write an example of how we can set the cookie scope (you know write a simple line of shibboleth2.xml illustrating the how)?<br><br></div><div>Thank you <br></div></div><div class="gmail_extra"><br><div class="gmail_quote">2016-05-18 16:26 GMT+02:00 Peter Schober <span dir="ltr"><<a href="mailto:peter.schober@univie.ac.at" target="_blank">peter.schober@univie.ac.at</a>></span>:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">* reda sabir <<a href="mailto:sabiretude@gmail.com">sabiretude@gmail.com</a>> [2016-05-18 11:27]:<br>
<span class="">> I foundĀ  a more simple solution:<br>
<br>
</span>You didn't, that's exactly what I wrote in my previous reply which you<br>
even quoted again:<br>
<br>
* Peter Schober <<a href="mailto:peter.schober@univie.ac.at">peter.schober@univie.ac.at</a>> [2016-05-17 19:40]:<br>
<span class="im HOEnZb">> If the vhosts share a common DNS domain you could try to forgo<br>
> SAML-based SSO (involving a set of IDPs) and instead use a shared<br>
> domain cookie across all services. (Either the Shibboleth SP's session<br>
> cookie or an application cookie initially bootstrapped from one Shib<br>
> SP session and shared across all vhosts).<br>
<br>
</span><div class="HOEnZb"><div class="h5">-peter<br>
--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br>
</div></div></blockquote></div><br></div>