For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

Vinne73's avatar
Vinne73
Icon for Cirrus rankCirrus
Dec 12, 2016

Big-ip as SAML IdP: automate metadata import

Hi,

 

I'm looking into using our Big-IP as SAML IdP. It all seems straight forward, however I seem to be missing a key option: the regular import of SP Metadata.

 

We currently use a Shibboleth IdP 3.x This IdP downloads on a regular basis the metadata of our federations. (Belnet, eduGAIN) These federations are large. There are many SP, SP change all the time. Obviously I don't want to create all the SP from the Medata by hand. Or even automate it by tmsh, this seems to be a bad idea.

 

Is there any way to do this?

 

I've seen the option Idp Automation, unfortunately it seems to be only for when you use the Big-IP as SAML SP.

 

Thanks Vincent