Skip to Content.
Sympa Menu

per-entity - Re: [Per-Entity] Cloud-based SP Metadata Consumption Challenges (Two-Ways)

Subject: Per-Entity Metadata Working Group

List archive

Re: [Per-Entity] Cloud-based SP Metadata Consumption Challenges (Two-Ways)


Chronological Thread 
  • From: Nick Roy <>
  • To: "Cantor, Scott" <>, Thomas Scavo <>
  • Cc: Scott Koranda <>, "Domingues, Michael D" <>, "" <>, "" <>
  • Subject: Re: [Per-Entity] Cloud-based SP Metadata Consumption Challenges (Two-Ways)
  • Date: Fri, 22 Jul 2016 16:04:17 +0000
  • Accept-language: en-US
  • Authentication-results: spf=none (sender IP is ) ;
  • Spamdiagnosticmetadata: NSPM
  • Spamdiagnosticoutput: 1:99

+1 to Tom and Scott's suggestions.

John Bradley is on this list. John, could you update the wiki page here with
Ping software capabilities w/r/t MDQ?
https://spaces.internet2.edu/display/perentity/MDQ+Client+Software

Anyone want me to ask Zion Brewer of Microsoft to join the list and/or
clarify ADFS capabilities?

Thanks,

Nick

On 7/20/16, 1:10 PM,
"
on behalf of Cantor, Scott"
<
on behalf of
>
wrote:

> I'm guessing AD FS does not support the MDQ protocol per se but it
> will let you configure a URL to a single entity descriptor. The
> security model is probably TLS but I don't know if AD FS supports
> explicit anchors. I'll go way out on a limb and guess that Ping is
> similar.

The other half of this is probably some additions to the implementation
profile to clarify what "supports MDQ" really means. I don't know if we were
clear that preconfiguring URLs for every entity by hand didn't really
suffice. Which is to say, ADFS doesn't really support it in the sense that it
would matter.

We had other priorities getting things documented, but we need some
energy to drive some improvements to it at Kantara to nail some things down.

-- Scott






Archive powered by MHonArc 2.6.19.

Top of Page