Project

General

Profile

Support #1329

IDP SAML Metadata Attribute

Added by Arnaud Maillet over 7 years ago. Updated almost 7 years ago.

Status:
Fermé
Priority:
Bas
Assignee:
-
Category:
-
Target version:
Start date:
04 Apr 2012
Due date:
% Done:

0%

Patch proposed:
No
Planning:
No

Description

I followed the documentation to add an attribute in the SAML assertion when Authentic is IDP ( SAMLResponse ). It seems to work, but do you know if there is a way to update the IDP's metadata ? I want that my IDP's metadata shows that this attribute is supported.

According to the standard this is not required, but I was wondering if there is a way to do that automatically and not by hand.

What do you think about that ?

Regards,

History

#1 Updated by Benjamin Dauvergne over 7 years ago

Metadata generation is implemented in source:authentic2/saml/common.py in the function get_saml2_metadata() which using the Saml2Metadata class from source:authentic2/saml/saml2utils.py. It should be possible to extend the generator to support declarations of attributes.

get_saml2_metadata() is called by the metadata endpoint in the file source:idp/saml/saml2_endpoints.py. But currently there is not setting to specify the list of supported attributes, it could be something hardoced in the settings.py. That's a bit hacky but fast to implement so I'm not sure we would welcome the patch.

#2 Updated by Benjamin Dauvergne almost 7 years ago

  • Status changed from Nouveau to Fermé

Also available in: Atom PDF