Skip to Content.
Sympa Menu

inc-librsvcs - Re: [inc-librsvcs] Authentication plus authorization in EZproxy

Subject: InCommon Library Services

List archive

Re: [inc-librsvcs] Authentication plus authorization in EZproxy


Chronological Thread 
  • From: "Paul B. Hill" <>
  • To: David Kennedy <>
  • Cc: Rich Wenger <>, inc-librsvcs <>
  • Subject: Re: [inc-librsvcs] Authentication plus authorization in EZproxy
  • Date: Thu, 02 Apr 2009 18:47:39 -0400


EZproxy, as a Shibboleth service provider, can consume user attributes that are supplied by the identity provider. And it can use those user attributes to assign users (or user sessions) to ezproxy "Groups".

In our case the authorization management cannot be determined directly via the attributes released by the identity provider. As I understand the current MIT EZproxy deployment, once the authentication has been done Rich's system calls a SOAP web service to retrieve the authorization information for the user.

Paul Hill
MIT Information Services and Technology



Archive powered by MHonArc 2.6.16.

Top of Page