Skip to Content.
Sympa Menu

shibboleth-dev - Re: [Shib-Dev] online attack resistance for UserPassword

Subject: Shibboleth Developers

List archive

Re: [Shib-Dev] online attack resistance for UserPassword


Chronological Thread 
  • From: Leif Johansson <>
  • To:
  • Subject: Re: [Shib-Dev] online attack resistance for UserPassword
  • Date: Tue, 31 May 2011 23:41:15 +0200

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On 05/31/2011 11:02 PM, Chad La Joie wrote:
> It's not really a Shib topic. Either your authentication system does
> it or it doesn't. If it doesn't, that's where you need to added the
> features you require.

I beg to disagree. If its captchas you want to use and if you use
username+passwords with the shibboleth authentication handler then
this has to be done in the IdP, right?

Cheers Leif
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iEYEARECAAYFAk3lYHsACgkQ8Jx8FtbMZnehNwCfRsy1Ff0vQ1XB5qJM4W9w2Q/B
RiMAoKTEEMwzsoqKxuXoF/EJrUoTCey3
=G7FV
-----END PGP SIGNATURE-----



Archive powered by MHonArc 2.6.16.

Top of Page