Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Consult your local Shibboleth experts for guidance.

In the present case, the SP consists of the Shibboleth SP software. 

idP (Identity Provider): A web-based system that can authenticate a user on behalf of another system (called SP, for Service Provider).

Upon successful login at the idP, the idP will send information about the user (at least, "remote_user") back to the SP as "attributes".

The SP must be configured to specify which of these attributes should be passed to the shrine code in the form of request headers (we are not using request attributes because that necessitates the use of AJP, which is being phased out of Tomcat).In the present case, the SP consists of the Shibboleth SP software, which 

There are five configuration files that need to go on the host that is running shibd (Shibboleth SP). They will be installed upon installing Shibboleth SP, and they need to be overlayed/modified to reflect your installation, as follows:

...