<html>
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
  </head>
  <body text="#000000" bgcolor="#FFFFFF">
    <div class="moz-cite-prefix">My very simplistic decision tree goes:<br>
      <br>
      Do they support InCommon / eduGAIN?<br>
      <br>
      Yes - use InCommon<br>
      No - use CAS<br>
      <br>
      We're running the actual CAS IdP, and we are way more comfortable
      configuring services in that manually for either the CAS or SAML
      protocols than in the Shibboleth IdP. So we use that when we don't
      have the extreme ease of use with InCommon.<br>
      <br>
      On 03/28/2018 12:57 PM, IAM David Bantz wrote:<br>
    </div>
    <blockquote type="cite"
cite="mid:CAJ9XvwGorg0HCFeKTxVZbnR5ayg7S0zbTE4M6Pxs2BhT2L=fvQ@mail.gmail.com">
      <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
      <div dir="ltr">UA service owner for new vended cloud service that
        supports authN via CAS or Shibboleth (Ad Astra) asks for input
        on selecting one or the other, as we still run separate CAS
        (mainly for Banner) and Shibboleth identity services (tied to
        same identities in AD).
        <div><br>
        </div>
        <div>Can anyone share a simple list of +/- for responding to
          this question?</div>
        <div><br>
        </div>
        <div>Or know specific reason to implement one or the other for
          Ad Astra?</div>
        <div><br>
        </div>
        <div>David Bantz</div>
        <div>UA OIT IAM</div>
      </div>
      <br>
      <fieldset class="mimeAttachmentHeader"></fieldset>
      <br>
    </blockquote>
    <p><br>
    </p>
  </body>
</html>