Forum Discussion
ChristianH_1903
Nimbostratus
Nov 18, 2015Generating SAML attributes and calculations in variable assignments
Hi,
I'm currently setting up my f5 to act as SAML IdP. One of the attributes I need to send back is supposed to contain an opaque, privacy-preserving unique ID. I was thinking of using e.g. sha2...
ChristianH_1903
Nimbostratus
Nov 19, 2015The problem is that the "eduPersonTargetedID" should be be different for different SPs. Just adding a prefix/suffix per SP to the value calculated from the original user attribute (email address in my case) would still allow to see that it is the same person accessing the 2 services. Ideally I would create the SHA235 value our of the email address plus an unique identifier for the SP at the time the SAML attribute is assigned to the SAML response.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
DevCentral Quicklinks
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com
Discover DevCentral Connects