20 likes | 147 Views
Obligatory Geek Diagram – Simplified. Student is at Starbucks. IdP/SP communication via SAML attributes exchanged through the browser session. Protected Web Service is at a university. IdP is at his school. Shibboleth Identity Provider (IdP). Shibboleth Service Provider (SP).
E N D
Obligatory Geek Diagram – Simplified Student is at Starbucks IdP/SP communication via SAML attributes exchanged through the browser session Protected Web Service is at a university IdP is at his school Shibboleth Identity Provider (IdP) Shibboleth Service Provider (SP) (mod_shib gets attributes from shibd and protects web apps) Access to protected service (web app) is controlled by shib gatekeeper (shibd daemon maintains state) (IdP is a J2EE app) Active Directory Server