shibboleth-dev - Re: (shib 2.0) too many attribute lookups
Subject: Shibboleth Developers
List archive
- From: Chad La Joie <>
- To:
- Subject: Re: (shib 2.0) too many attribute lookups
- Date: Thu, 25 Oct 2007 07:15:46 +0200
- Organization: SWITCH
The IdP doesn't have its caching turned on right now, once that is
enabled those plugins that can cache won't do a second lookup. However
you'll still see it hit the resolver, run the attribute definitions at
least and run the AFP as there is no way to cache the results of that
process.
Jim Fox wrote:
I do a login to a shib2 idp from a shib2 sp using saml1 (authn,
followed by authz request from the shibd). The IdP is
doing a full attribute lookup at the authn step and
another at the authz query.
Jim
--
SWITCH
Serving Swiss Universities
--------------------------
Chad La Joie, Software Engineer, Security
Werdstrasse 2, P.O. Box, 8021 Zurich, Switzerland
phone +41 44 268 15 75, fax +41 44 268 15 68
,
http://www.switch.ch
- (shib 2.0) too many attribute lookups, Jim Fox, 10/23/2007
- Re: (shib 2.0) too many attribute lookups, Chad La Joie, 10/25/2007
Archive powered by MHonArc 2.6.16.