Child pages
  • Invoking UCTrust and InCommon Applications without WAYF Processing

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

The general format of such a URL is:

No Format
   IdP_SingleSignOnServicesingleSignOnService_Location?
           shire=SP_AssertionConsumerServiceassertionConsumerService_Location&
           target=SP_Entry_Point&
           providerID=SP_EntityDescriptorentityDescriptor_entityID

The four query string parameters here are taken from the InCommon metadata for the SP being invoked, as well as the campus's IdP:

  • IdP_SingleSignOnServicesingleSignOnService_Location is the Location attribute of the \<SingleSignOnService\> <singleSignOnService> object within the IdP's \<entityDescriptor\> <entityDescriptor>.
  • SP_AssertionConsumerService_Location is the   Location attribute of the <AssertionConsumerService> object within the SP's <entityDescriptor>.
  • SP_Entry_Pointis the URL to which the user's browser should be redirected to invoke the application after the user has been authenticated by the IdP. It does not appear in the InCommon metadata.
  • SP_EntityDescriptor_entityID is the entityID attribute of the SP's <entityDescriptor>.

...