<div dir="ltr"><div dir="ltr"><div>Hello</div><div><br></div><div>Is this a possible feature of shibboleth to delegates authentification to another idp.</div><div><br></div><div>The case is :</div><div>- We have an instance of Shibboleth IDP connected to an Open LDAP. We have the control over Shibboleth and 
Open 

LDAP.</div><div>- We have 2 applications that we have control on. These 2 applications are the Service Providers, and both are configured to authenticate through the instance of Shibboleth IDP. So when a user logs into one the 2 applications, he is authenticated on the other.<br></div><div>- Now a customer has an IDP (a custom one, another Shibboleth, Google, Microsoft). Could we let 
Shibboleth

delegates the authentication to the IDP of the customer. We had off course to configure Shibboleth to add the IDP of the customer. This will avoid to change the 2 service providers configuration.</div><div>For example, i can see a Login form + a Login with Google on : <a href="https://id.atlassian.com">https://id.atlassian.com</a><br></div><div><br></div><div>If i need advice for that, how could i do ?<br></div><div><br></div><div></div>Thomas de Verdière<br></div><div dir="ltr">-- <br><div dir="ltr" class="gmail_signature"><div dir="ltr"><div><img src="https://www.iobeya.com/sites/default/files/Signature_default.png"></div></div></div></div></div>