[wsf-dev] ECP plugin build/execute feedback

Peter Williams pwilliams at rapattoni.com
Mon Apr 28 12:54:48 PDT 2008


Ok. I will make a PDU by hand: an SAML2.AuthnRequest encoded in XML. Then I will put this presentation data value into the SPCONFIG file on the default SessionInitiator, flagging that its a "template" PDU. Thus, the message on the wire derived from said template will carry forward the subordinate protocol elements (e.g. IDPList, ACSURL).

NB: I had been wondering, architecturally, if a chaining provider (of SAML2.SessionInitiators, the subset with ECP=true attribute) would be the way that Shib2 would address this issue. Seemed a cute idea, at least.



_________________________
Peter Williams



From: Scott Cantor
Sent: Mon 4/28/2008 12:39 PM
To: 'Peter Williams'; wsf-dev at lists.openliberty.org
Subject: RE: [wsf-dev] ECP plugin build/execute feedback


> Q: is there any way via query-string to populate the IDPList with >1
entry?

No, that use case is addressed together with the general "advanced
AuthnRequest" bucket. It's a bit ugly, but you basically embed an
AuthnRequest inside the SessionInitiator in question and it will use it as a
template.

-- Scott
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openliberty.org/pipermail/wsf-dev_lists.openliberty.org/attachments/20080428/1f9bee84/attachment.html 


More information about the Wsf-dev mailing list