<div dir="ltr">We're working to deploy IBM's API Manager.  The API manager integration team has asked if the IDP can provide an authentication token...<div><div><div><br></div><div>From our meeting notes..</div><div>- After successful shibboleth authentication, pass a token back to the APIm for use during the session</div></div><div>- After successful shibboleth authentication, generate a token and display it on a web page so that the token can be used on the command line.<br></div><div>- Create a URI that will take as input a base 64-encoded uniqname:token pair, and tell whether the token is still valid.<br></div></div><div><br></div><div>Based on their request, it feels a lot like they're asking for us to provide a security token service, or for for the IDP to produce JWT.<br></div><div><br></div><div>Am I reading this right? How have others in the community provided this functionality?</div><div><br></div><div>Liam</div></div>