Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Added note regarding attribute filter

...

However, if the service provider is unable to register with a federation, or your IdP is not a member of a federation, you may load a new metadata source containing the service providers metadata. In most cases the service provider can provide a URL from which to load the metadata and you should use the file-backed HTTP metadata provider to retrieve it.

Note

You may also have to extend the IdP's attribute-filter.xml such that it contains some filter rules that will release some attributes to the SP.

Advanced Configurations

Some service providers, especially those using something other than the Shibboleth Service Provider software, require special tuning of the messages that are sent to them (e.g. attributes pushed to them during the sign on process, certain messages signed or encrypted). These sorts of configurations may be set by creating per service provider configurations.