Namespace: urn:mace:shibboleth:2.0:afp
Schema: http://shibboleth.net/schema/idp/shibboleth-afp.xsd
...
The primary use case for this is proxying when filtering inbound attributes, or in "multi-homing" scenarios in which the IdP may be representing multiple sources of attributes itself under different names.
Reference
Localtabgroup | ||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
Example
The example reads "Apply this rule if the attribute issuer is named 'https://idp.example.org'".
Code Block |
---|
<PolicyRequirementRule xsi:type="Issuer" value="https://idp.example.org" /> |
...