<div dir="ltr"><div><div>Hello all,<br><br></div>We are using PWM a self password / registering application. It is connected with OpenLDAP. Shibboleth is the Idp and is connected to the same OpenLDAP. We are developping an SP : a portal application with Java Spring / SAML.<br><br></div><div>I added to the Shibboleth login page a link 'New user'. It allows the user to register a new account on PWM application. At the end of this registering process on PWM, the user is authenticated on PWM and he is redirected to the portal (SP). And the portal begins the SAML authentication process with the Idp. So the user is redirected to the Shibboleth login page, where he has to type his login and password once again.<br><br>Is there a 
way that once the user is 
authenticated



on PWM, it is authenticated on Shibboleth ?<br></div><div>And if there is a way to do it, is it simple or complex ?<br></div><div><br></div><div>The idp and pwm webapps may be on the same http domain so it may be possible to share a cookie. Is the "External login flow" a way to do it, so PWM will do the authentication instead of Shibboleth ?<br></div><div><br><div>Regards,<br></div><div>Thomas<a href="http://www.iobeya.com/" target="_blank"><span style="font-size:9.0pt;font-family:"Arial",sans-serif;color:black;text-decoration:none"><br></span></a><span style="color:#222222"></span></div><div><div class="gmail_signature" data-smartmail="gmail_signature"><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div dir="ltr"><span style="font-family:Arial,Helvetica,sans-serif;font-size:medium"></span></div></div></div></div></div></div></div></div></div></div></div></div></div>
</div></div></div>