Skip to Content.
Sympa Menu

shibboleth-dev - Shibboleth SP generated Metadata

Subject: Shibboleth Developers

List archive

Shibboleth SP generated Metadata


Chronological Thread 
  • From: "Adam Lantos" <>
  • To:
  • Subject: Shibboleth SP generated Metadata
  • Date: Fri, 14 Nov 2008 23:06:52 +0100

Hello,


With Shibboleth2 SP (2.0), the Extensions node of the generated
metadata is not valid.

<md:Extensions>
<DiscoveryResponse
xmlns="urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol"
Location="https://host/Shibboleth.sso/DS"; index="1"/>
</md:Extensions>

According to http://wiki.oasis-open.org/security/IdpDiscoSvcProtonProfile
specs,

"An extension element, <idpdisc:DiscoveryResponse>, of type
md:IndexedEndpointType, is used to define the acceptable locations to
which the discovery service should respond with the user's identity
provider. The Binding attribute of the extension element MUST be set
to:
urn:oasis:names:tc:SAML:profiles:SSO:idp-discovery-protocol."


thanks,
Adam



Archive powered by MHonArc 2.6.16.

Top of Page