<html><head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
</head>
<body>
<font face="Helvetica, Arial, sans-serif"><bean
parent="shibboleth.Conditions.RelyingPartyId" c:<b>candidates</b>="#{{'</font><font face="Helvetica, Arial, sans-serif"><font face="Helvetica, Arial,
sans-serif">????????</font>', '</font><font face="Helvetica,
Arial, sans-serif"><font face="Helvetica, Arial, sans-serif">????????</font>',
'????????'}}" /></font><br>
<br>
<div class="moz-cite-prefix">On 9/1/22 9:19 AM, Jason Rotunno via
users wrote:<br>
</div>
<blockquote type="cite" cite="mid:CAEskzqHJ2vQM14yv6rxudLiC3bvsmJUGBK9uxzik=Cr1ygzABA@mail.gmail.com">
<b><span style="font-size: 10pt; color: rgb(112, 48, 160);
background: rgb(255, 235, 156);">CAUTION:
</span></b><span style="font-size: 10pt; color: black;
background: rgb(255, 235, 156);">This email originated from
outside of JMU. Do not click links or open attachments unless
you recognize the sender and know the content is safe.</span>
<hr>
<div>
<div dir="ltr">
<div>If I need to use a custom value or a different NameID
format for a particular SP, I add it to saml-nameid.xml
similar to this (depending on the SP's requirements):</div>
<div><br>
</div>
<blockquote style="margin:0 0 0 40px;border:none;padding:0px">
<div> <bean
parent="shibboleth.SAML2AttributeSourcedGenerator"</div>
<div>
p:format="urn:oasis:names:tc:SAML:2.0:nameid-format:persistent"</div>
<div> p:attributeSourceIds="#{ {'bannerNameID'}
}"></div>
<div> <property name="activationCondition"></div>
<div> <bean
parent="shibboleth.Conditions.RelyingPartyId"
c:candidate="<a href="https://urldefense.proofpoint.com/v2/url?u=https-3A__v1-2Didentity.dudesolutions.io_sso_saml2_metadata&d=DwMFaQ&c=eLbWYnpnzycBCgmb7vCI4uqNEB9RSjOdn_5nBEmmeq0&r=Pa2DB88IW_s2TyLfktHtWA&m=dPtRC8yRz6LF-Bj2yzRVobIhIyl1YL_KhyV4alq_-49Zk2jMsZ2AMVjCeR2hXtAD&s=AH1tYYN8MYwJZjIAM_7MCAkqZKVBOdWU0e_o5viU8sE&e=" moz-do-not-send="true">https://v1-identity.dudesolutions.io/sso/saml2/metadata</a>"
/></div>
<div> </property></div>
<div> </bean></div>
</blockquote>
<div><br>
</div>
<div>Is there a way to include multiple values for c:candidate
so that I don't have to create a new bean for each SP that
has the same requirement?</div>
<div><br>
</div>
-- <br>
<div dir="ltr" class="gmail_signature" data-smartmail="gmail_signature">
<div dir="ltr">
<div>
<div dir="ltr">
<div>
<div dir="ltr">
<div dir="ltr">
<div dir="ltr">
<div dir="ltr">
<div dir="ltr">
<div dir="ltr">
<div dir="ltr">
<pre cols="72">Jason Rotunno
System & Security Administrator
Swarthmore College
500 College Ave
Swarthmore, PA 19081
610.328.8505
</pre>
<pre cols="72"><b>VERIFY before you click!!</b>
- Attackers make their emails look like they come from someone they don't.
- Attackers make links look like they go to websites they don't.
- Attackers disguise malware as receipts, invoices, faxes, etc.</pre>
<pre cols="72">Forward suspicious emails to <a href="mailto:phishing@swarthmore.edu" style="font-family:Arial,Helvetica,sans-serif" target="_blank" moz-do-not-send="true" class="moz-txt-link-freetext">phishing@swarthmore.edu</a><span style="font-family:Arial,Helvetica,sans-serif">.</span></pre>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
<br>
<fieldset class="moz-mime-attachment-header"></fieldset>
</blockquote>
<br>
<pre class="moz-signature" cols="72">--
D o n a l d L o h r
I n f o r m a t i o n S y s t e m s
J a m e s M a d i s o n U n i v e r s i t y
5 4 0 . 5 6 8 . 3 7 3 0
</pre>
</body>
</html>