Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

In SWAMID federationIdentifier is 'SWAMID' and version is '21.0'.

The attributes exposed are:

Name

Description

TS

the login time stamp

RP

the relying party entityID

AP

the asserting party entityID (typcially the IdP)

PN

a sha256-hash of the local principal name and a unique key

AM

the authentication method URN

 

...



The instruction is know to work for Shibboleth Identity Provider version 3.1 or later.

...

Warning

Do not lose this salt once you've started to generate logs. If this salt is lost or reset then all local principal names will appear to have changed to analysis tools so avoid this!

 


Enable the logging

Add the following options to ididp.properties

Code Block
idp.fticks.federation=SWAMID
idp.fticks.algorithm=SHA-256
idp.fticks.salt=<salt>
idp.fticks.loghost=syslog.swamid.se

...