<div dir="ltr">I think you're right I over-interpreted and/or misread.<div>db</div><div><br></div></div><div class="gmail_extra"><br><div class="gmail_quote">On Wed, Nov 2, 2016 at 4:10 PM, Michael A Grady <span dir="ltr"><<a href="mailto:mgrady@unicon.net" target="_blank">mgrady@unicon.net</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div style="word-wrap:break-word"><span class=""><br><div><blockquote type="cite"><div>On Nov 2, 2016, at 6:17 PM, IAM David Bantz <<a href="mailto:dabantz@alaska.edu" target="_blank">dabantz@alaska.edu</a>> wrote:</div><br class="m_3780691158236843431Apple-interchange-newline"><div><span style="font-family:Helvetica;font-size:14px;font-style:normal;font-variant:normal;font-weight:normal;letter-spacing:normal;line-height:normal;text-align:start;text-indent:0px;text-transform:none;white-space:normal;word-spacing:0px;float:none;display:inline!important">WORKPLACE BY FACEBOOK apparently deploys simpleSAML PHP / SAML 2.0 for SSO but provides minimal documentation. No metadata or certificate, no attribute requirements, etc.</span></div></blockquote></div><br></span><div>
Just as a matter of interest, why do think they are using SimpleSAMLphp? Just because they gave you a URL ending in .php? They'd have had to make some major changes to have URLs of the form they do, those don't match any SimpleSAML pattern I've ever seen. And from the other responses, it sure doesn't sound like Facebook is using SimpleSAML -- because if they were, "doing SAML right", providing you metadata, etc. would be easy.</div><div><br>--<br>Michael A. Grady<br>IAM Architect, Unicon, Inc.
</div>
<br></div><br>--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.<wbr>net</a><br></blockquote></div><br></div>