<div dir="ltr"><div>Hi,</div><div><br></div><div>I have set up a new Service Provider for my organization.</div><div><br></div><div>Another office in my organization has set up the Identity Provider.</div><div><br>We have exchanged metadata.</div><div><br></div><div>We now need to test Shibboleth operations.</div><div><br></div><div>Users typically login to their Windows Desktops and in many cases the Linux servers via a CAC (Common Access Card) card...which is a small credit card size plastic card that slips into a slot on the laptop and provides login information/confirmation of identity.</div><div><br></div><div>Here is my task from the developers:</div><div>=========================================================<br></div><div><div class="gmail-vta"><p>Please configure Shibboleth to accept NOAA CAC user. We'll use two ST6 applications to test the concept:</p><ol><li><a href="http://st-test.nmfs.noaa.gov/pims">st-test.nmfs.noaa.gov/pims</a></li><li><a href="http://st-test.nmfs.noaa.gov/rpts">st-test.nmfs.noaa.gov/rpts</a></li></ol><p>User will login into one of the application using CAC card and then should be able to login into the other with no credentials provided.</p></div><div class="gmail-vta">==========================================================</div><div class="gmail-vta"><br></div><div class="gmail-vta">Question 1:  Connecting applications to use Shibboleth, does this require new configurations on the Service Provider or the Identity Provider, or both?</div><div class="gmail-vta"><br></div><div class="gmail-vta">Question 2:  Does anyone know of any documentation on how to get Shibboleth to work with CAC cards?</div><div class="gmail-vta"><br></div><div class="gmail-vta">Thanks,</div><div class="gmail-vta">Mike</div><div class="gmail-vta"><br></div><div class="gmail-vta"><br></div><br clear="all"><br>-- <br></div><div class="gmail_signature"><div dir="ltr">Michael NeSmith<br>Senior Linux Administrator<br>Earth Resources Technology, Inc.<br></div></div>
</div>