shibboleth-dev - SSO cookie - IDP 1.3.2
Subject: Shibboleth Developers
List archive
- From: André Cruz <>
- To:
- Subject: SSO cookie - IDP 1.3.2
- Date: Thu, 19 Jul 2007 10:05:38 +0100
Hello.
I configured the SSO cookie setting and thought everything was working correctly but then I noticed that, even though browsers were being redirected to the protected SSO path, no cookie was being set for subsequent requests.
I took a look at the code (src/edu/internet2/middleware/shibboleth/ idp/provider/SSOHandler.java) and, if I'm not mistaken, the cookie will never be set.
The cookie is only set if username is not null and we're on the protected path. The first time username will be null, and the next time we will not be in the protected path since we already have the username in the session... Unless we get to a different front-end in which case the auth is asked again since there is no username or cookie.
Am I doing something wrong?
Regards,
André
- SSO cookie - IDP 1.3.2, André Cruz, 07/19/2007
- Re: SSO cookie - IDP 1.3.2, Samuel Cochran, 07/19/2007
- RE: SSO cookie - IDP 1.3.2, Scott Cantor, 07/19/2007
- RE: SSO cookie - IDP 1.3.2, Scott Cantor, 07/19/2007
- Re: SSO cookie - IDP 1.3.2, André Cruz, 07/20/2007
- Re: SSO cookie - IDP 1.3.2, Will Norris, 07/20/2007
- RE: SSO cookie - IDP 1.3.2, Scott Cantor, 07/20/2007
- Re: SSO cookie - IDP 1.3.2, André Cruz, 07/20/2007
- Re: SSO cookie - IDP 1.3.2, Samuel Cochran, 07/19/2007
Archive powered by MHonArc 2.6.16.