Skip to Content.
Sympa Menu

edugain-discuss - Re: [eduGAIN-discuss] opt-out federations promoting opt-out

edugain-discuss AT lists.geant.org

Subject: An open discussion list for topics related to the eduGAIN interfederation service.

List archive

Re: [eduGAIN-discuss] opt-out federations promoting opt-out


Chronological Thread 
  • From: Olivier Salaün <olivier.salaun AT renater.fr>
  • To: Tom Scavo <trscavo AT internet2.edu>
  • Cc: "edugain-discuss AT geant.net" <edugain-discuss AT geant.net>
  • Subject: Re: [eduGAIN-discuss] opt-out federations promoting opt-out
  • Date: Tue, 02 Dec 2014 15:30:00 +0100
  • List-archive: <https://mail.geant.net/mailman/private/edugain-discuss/>
  • List-id: eduGAIN discussion list <edugain-discuss.geant.net>

Le 02/12/2014 14:07, Tom Scavo a écrit :
On Tue, Dec 2, 2014 at 7:37 AM, Olivier Salaün
<olivier.salaun AT renater.fr> wrote:
I hope I provide the details you expected.
Yes, indeed. InCommon is way behind RENATER and SWITCH with respect to
interfederation. This is very helpful. Thank you very much.

Did you consider providing a single metadata aggregate to your
members? If so, can say why you chose to provide multiple aggregates
instead?
It seems that separating the metadata aggregates with a clear definition of what they include helps IdP/SP admin have a finer control of what they load. Also, given the current groth of metadata files nowadays and technical issues it creates (latest releases of simpleSAMLphp and SWITCH WAYF to use a different XML parser, tuning of the JVM for a Shibboleth IdP) it seems reasonable that a SAML implementation only loads the SAML metadata it has need for:
  • SPs need IdPs metadata,
  • IdPs need SPs metadata,
  • DS need both.

--


 
Olivier Salaün
Etudes et projets applicatifs
 
Tél : +33 2 23 23 71 27
Fax : +33 2 23 23 71 11
www.renater.fr
RENATER
263 Avenue du Gal Leclerc
35042 Rennes Cedex


PNG image




Archive powered by MHonArc 2.6.19.

Top of Page