<div dir="ltr"><div>Thanks Nate.<br><br>>Let me know if you need a more detailed example,<br><br></div>If you could -- that will be super helpful - i.e. with the entityID for application that requires attribute consent form.<br><br><br><div class="gmail_extra"><br><div class="gmail_quote">On Wed, Jan 25, 2017 at 5:29 PM, Klingenstein, Nate <span dir="ltr"><<a href="mailto:nklingenstein@calstate.edu" target="_blank">nklingenstein@calstate.edu</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">



<div bgcolor="#FFFFFF" text="#000000">
<div class="m_-299729331706320273moz-cite-prefix">Joel,<br>
<br>
Yes, all you need to do is define a unique entityID for that application.<br>
<br>
Then, add a relying party override by name.  In that override, define a reference to "attribute-release" on the SAML 2 configuration as a post authentication flow.<br>
<br>
<a class="m_-299729331706320273moz-txt-link-freetext" href="https://wiki.shibboleth.net/confluence/display/IDP30/ConsentConfiguration" target="_blank">https://wiki.shibboleth.net/<wbr>confluence/display/IDP30/<wbr>ConsentConfiguration</a><br>
<br>
Let me know if you need a more detailed example,<br>
Nate.<div><div class="h5"><br>
<br>
On 01/26/2017 01:08 AM, Joel Levin wrote:<br>
</div></div></div><div><div class="h5">
<blockquote type="cite">
<div dir="ltr">
<div>
<div>Is there a way to explicitly specify application whereby the attribute-consent will appear?<br>
<br>
</div>
We do not need it for 95% of applications -- but require for 5% or so.<br>
<br>
</div>
j.<br>
<div>
<div>
<div><br>
<br>
</div>
</div>
</div>
</div>
</blockquote>
<p><br>
</p>
</div></div></div>

<br>--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.<wbr>net</a><br></blockquote></div><br></div></div>