comanage-dev - Re: [comanage-dev] architecture questions and asserting group membership
Subject: COmanage Developers List
List archive
- From: Niels van Dijk <>
- To:
- Subject: Re: [comanage-dev] architecture questions and asserting group membership
- Date: Tue, 03 May 2011 17:32:03 +0200
- Organization: SURFnet
Hi
On 05/03/2011 04:28 PM, Steven Carmody wrote:
>
> The SP feature is called ""Simple" Attribute Aggregation".
>
> So, when scott.koranda logs into the wiki, the wiki obtains attributes
> describing scott from ligo.org (his idp). The SP is also configured to
> issue a SAML attribute query to the new CO instance (using one of the
> values provide by Scott's home organization to identify Scott; this is
> a collaboration environment, that value would typically be Scott's
> EPPN value).
>
> The SP aggregates the attribute values obtained form Scott's home org
> and from the CO, and presents them tot he wiki....
>
>
Note that this requires a rather specific SP: although the technique
used is part of the SAML spec, there is -as far as I am aware- only 1
known implementation: Shibboleth. This may work for you if you only need
to deal with Shib (an the SPs chooce to support it), but as soon as you
have a non shib SP this will most likely not work.
There are other ways of getting attributes though, e.g. via LDAP or by
e.g. REST based queries.
Cheers,
Niels
begin:vcard fn:Niels van Dijk n:van Dijk;Niels org:SURFnet;Advanced Services adr:;;Radboudkwartier 273;Utrecht;;NL3501DA;The Netherlands email;internet: tel;work:+31 302 305 337 tel;cell:+31 651 346 657 url:http://www.surfnet.nl version:2.1 end:vcard
- [comanage-dev] architecture questions and asserting group membership, Scott Koranda, 05/03/2011
- Re: [comanage-dev] architecture questions and asserting group membership, Steven Carmody, 05/03/2011
- Re: [comanage-dev] architecture questions and asserting group membership, Niels van Dijk, 05/03/2011
- Re: [comanage-dev] architecture questions and asserting group membership, Steven Carmody, 05/03/2011
- Re: [comanage-dev] architecture questions and asserting group membership, Scott Koranda, 05/03/2011
- RE: [comanage-dev] architecture questions and asserting group membership, Chris Hyzer, 05/03/2011
- Message not available
- RE: [comanage-dev] architecture questions and asserting group membership, Chris Hyzer, 05/03/2011
- Message not available
- RE: [comanage-dev] architecture questions and asserting group membership, Chris Hyzer, 05/03/2011
- Re: [comanage-dev] architecture questions and asserting group membership, Niels van Dijk, 05/03/2011
- Re: [comanage-dev] architecture questions and asserting group membership, Steven Carmody, 05/03/2011
Archive powered by MHonArc 2.6.16.