Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

  • Open shibboleth2.xml, add Weill Medical IDP's metadata resolver inside <ApplicationDefaults .. > block

    Code Block
     <MetadataProvider type="XML" validate="true"
                    url="https://login.weill.cornell.edu/idp/saml2/idp/metadata.php"
                   backingFilePath="weill-idp.xml" maxRefreshDelay="7200" />
  • In shibboleth2.xml, find <SSO entityID=..> tag which is inside <Sessions> block and replace it with:

    Code Block
    <SSO discoveryProtocol="SAMLDS"  discoveryURL="https://shibtest.cit.cornell.edu/loginSelection.aspx">SAML2</SSO>

    loginSelection.aspx is a page that you'll need to build(see below). You can name it what ever you like and host it on the same server or a different server. In this example, we name it loginSelection.aspx and store it at root of the site https://shibtest.cit.cornell.edu. Make sure your login selection page doesn't require authentication. 

...