-
Notifications
You must be signed in to change notification settings - Fork 11
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Possible to include hosted IDPs in the list? #14
Comments
Does it actually work if you would select such an IdP? |
I do not know because the hosted idp is not in the list |
I don't believe this will work the way you're hoping. If you're running an IdP and an SP on the same web server, copy the IdP's generated metadata into saml20-idp-remote.php to configure the SP. Then it'll appear in discovery. |
That makes sense to me. Rather make configuration explicit: list the IdPs you want in saml20-idp-remote rather than 'magically' making login also possible for any local IdPs - not quite sure that this would not lead to various surprises. |
I think it would be a nice feature.. It's just a matter of writing proper upgrade notes. |
IMHO, that includes not turning the feature on by default. But it also occurs to me it is solved simply by documentation. We do exactly what I suggested earlier, and the metadata in samls20-idp-hosted.php and saml20-idp-remote.php is not identical (particularly around authproc filters and the mdui dressing). So there's also some value in the status quo. |
authproc-filters are irrelevant for this purpose and mdui settings should be identical? Can you explain what the difference is? |
Hi, is it possible to also include saml20-idp-hosted IDPs in the disco list?
At the moment it only shows what is in saml20-idp-remote.
Cheers
The text was updated successfully, but these errors were encountered: