shibboleth-dev - Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT
Subject: Shibboleth Developers
List archive
- From: "Diego R. Lopez" <>
- To:
- Cc: "Ajay Daryanani" <>
- Subject: Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT
- Date: Sun, 17 Feb 2008 23:45:36 +0100
On 15 Feb 2008, at 22:09, Tom Scavo wrote:
Is the Shib 1.3 IdP involved in this exchange an ordinary IdP, or is
it extended to support the eduGAIN WebSSO profile in some way?
This is what the eduGAIN profile says about WebSSO using SAML 1.1:
For those eduGAIN BEs configured to use SAML 1.1, Web SSO procedures MUST comply with those described by the Shibboleth Web SSO Browser/ POST profile (as described in [SAMLBind] and [ShibArch]), and according to the following rules:
· The providerId parameter used in the GET request to the H-BE SHALL contain the unique identifier of the requesting R-BE. It MUST be coded according to the structure defined for BE identifiers in the guidelines of section 3.1.
· The SAML response sent by the H-BE SHALL comply with the SAML 1.1 mapping of an eduGAIN AuthenticationResponse as described in the corresponding section of this document.
· If an error occurs, the H-BE MUST return a SAML <Response> in accordance with the SAML Browser/POST profile and coded according to the rules described for the SAML mapping of eduGAIN AuthenticationResponse with error results.
So an ordinary Shib IdP should be able to connect to eduGAIN, as long as
it uses a certificate issued according to eduGAIN rules. We have
arlready demonstrated interoperability in the other direction: the
CO-Manage demo site at http://comanage.internet2.edu/ accepts identity
assertions coming from eduGAIN IdPs.
Be goode,
--
"Esta vez no fallaremos, Doctor Infierno"
Dr Diego R. Lopez
Red.es - RedIRIS
The Spanish NREN
e-mail:
jid:
Tel: +34 955 056 621
Mobile: +34 669 898 094
-----------------------------------------
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, (continued)
- Message not available
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Tom Scavo, 02/11/2008
- RE: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Scott Cantor, 02/11/2008
- Message not available
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Tom Scavo, 02/11/2008
- RE: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Scott Cantor, 02/11/2008
- RE: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Steven_Carmody, 02/12/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Diego R. Lopez, 02/13/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Steven_Carmody, 02/14/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Diego R. Lopez, 02/14/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Steven_Carmody, 02/15/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Tom Scavo, 02/15/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Diego R. Lopez, 02/17/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Tom Scavo, 02/17/2008
- Message not available
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Tom Scavo, 02/18/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Ajay Daryanani Arjandas, 02/18/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Steven_Carmody, 02/18/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Ajay Daryanani Arjandas, 02/19/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Chad La Joie, 02/19/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Diego R. Lopez, 02/19/2008
- RE: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Scott Cantor, 02/19/2008
- RE: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Scott Cantor, 02/11/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Steven_Carmody, 02/20/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Ajay Daryanani Arjandas, 02/20/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Tom Scavo, 02/11/2008
- Re: SHIB Status call -- 2/11/2008) -- 12:00 pm EDT, 9 am PDT, Tom Scavo, 02/11/2008
- Message not available
Archive powered by MHonArc 2.6.16.