Skip to Content.
Sympa Menu

shibboleth-dev - Shibboleth SP generated Metadata

Please Wait...

shibboleth-dev@internet2.edu

Subject: Shibboleth Developers

List archive

Shibboleth SP generated Metadata


Chronological Thread 
  • From: "Adam Lantos" <adam.lantos@niif.hu>
  • To: shibboleth-dev@internet2.edu
  • Subject: Shibboleth SP generated Metadata
  • Date: Fri, 14 Nov 2008 23:06:52 +0100

Hello,


With Shibboleth2 SP (2.0), the Extensions node of the generated
metadata is not valid.

<md:Extensions>
<DiscoveryResponse
xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol"
Location="https://host/Shibboleth.sso/DS"; index="1"/>
</md:Extensions>

According to http://wiki.oasis-open.org/security/IdpDiscoSvcProtonProfile
specs,

"An extension element, <idpdisc:DiscoveryResponse>, of type
md:IndexedEndpointType, is used to define the acceptable locations to
which the discovery service should respond with the user's identity
provider. The Binding attribute of the extension element MUST be set
to:
urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol."


thanks,
Adam



Archive powered by MHonArc 2.6.16.

Top of Page