Skip to Content.
Sympa Menu

shibboleth-dev - Re: Authentication context in request map bug?

Subject: Shibboleth Developers

List archive

Re: Authentication context in request map bug?


Chronological Thread 
  • From: Lukas Haemmerle <>
  • To:
  • Subject: Re: Authentication context in request map bug?
  • Date: Wed, 20 Feb 2008 17:13:38 +0100
  • Organization: SWITCH - Serving Swiss Universities

Scott Cantor wrote:
This works as intended except for the authenticationContextClassRef in
the path element, which has no effect at all meaning no special AC class
is requested in the AuthnRequest.

Are you running the initiator manually by redirecting to it, or just relying
on the automatic behavior? It looks like the latter, but I wanted to make
sure.

Yes, the later one. It's the default initiator (isDefault="true" within the DS Initiator)

<<!-- An example supporting the new-style of discovery service. -->
<SessionInitiator type="Chaining" Location="/DS" id="DS"
isDefault="true" relayState="cookie">
<SessionInitiator type="SAML2" defaultACSIndex="1"
template="/opt/shibboleth-sp/etc/shibboleth/bindingTemplate.html" />
<SessionInitiator type="Shib1" defaultACSIndex="5"/>
<SessionInitiator type="SAMLDS"
URL="https://wayf-test.switch.ch/aaitest/WAYF"/>
</SessionInitiator>


Lukas


--
SWITCH
Serving Swiss Universities
--------------------------
Lukas Haemmerle, Software Engineer, Security
Werdstrasse 2, P.O. Box, 8021 Zurich, Switzerland
phone +41 44 268 15 64, fax +41 44 268 15 68
,
http://www.switch.ch



Archive powered by MHonArc 2.6.16.

Top of Page