Univention Bugzilla – Bug 39310
Move service provider definition into LDAP
Last modified: 2015-11-17 12:12:29 CET
Currently the service provider entries for the simplesamlphp identity provider are downloaded each time in a UCR module on all IDP-hosts (i.e. DC backup + DC master) to create the simplesamlphp configuration. We should change this, that every service provider stores these data on their computer/* object. A listener module then is able to write the data into the configuration.
Implemented. Instead of writing the XML metadata to the computer objects a saml/serviceprovider UDM entry is created in the joinscript of univention-management-console-webserver. The listener module for saml/serviceprovider has been adapted to allow an (invisble) extra attribute with the raw SAML XML metadata. So we can write the correct simplesamlphp configuration we need for UMC.
OK, interim bug, no changelog needed
UCS 4.1 has been released: https://docs.software-univention.de/release-notes-4.1-0-en.html https://docs.software-univention.de/release-notes-4.1-0-de.html If this error occurs again, please use "Clone This Bug".