From: Sander A. <sa....@fz...> - 2017-08-23 08:01:27
|
Hi, In our project is planed to use an additional attribute source for registered users. We want to extend authorization possibilities with this attribute source. Unity (A) is a proxy IdP and all services within the project use A for the authentication. The integration with other IdPs and SPs is already done. The attribute service (B) uses unity for authentication too. B is not an IdP, it is a SP of A. The situation would look like this: - The user authenticates at A (done) - The login into B is done with A (done; mapping by persistent identifier from A) - A get some additional information (e.g. group membership) about the user from B I know the possibility about adding attributes by the administration API. Is there another possibility to use additional attribute sources for registered users like described above? Best regards, Sander -- Federated Systems and Data Juelich Supercomputing Centre phone: +49 2461 61 8847 fax: +49 2461 61 6656 email: sa....@fz... ----------------------------------------------------------------------- ----------------------------------------------------------------------- Forschungszentrum Juelich GmbH 52425 Juelich Sitz der Gesellschaft: Juelich Eingetragen im Handelsregister des Amtsgerichts Dueren Nr. HR B 3498 Vorsitzender des Aufsichtsrats: MinDir Dr. Karl Eugen Huthmacher Geschaeftsfuehrung: Prof. Dr.-Ing. Wolfgang Marquardt (Vorsitzender), Karsten Beneke (stellv. Vorsitzender), Prof. Dr.-Ing. Harald Bolt, Prof. Dr. Sebastian M. Schmidt ----------------------------------------------------------------------- ----------------------------------------------------------------------- |