How to connect shibboleth idp to mysql instead of LDAP server?












0














I'm trying to install shibboleth IDP and SP in windows machine. My aim is to use mysql instead of LDAP. Couldn't find any relevant source. Please help!










share|improve this question



























    0














    I'm trying to install shibboleth IDP and SP in windows machine. My aim is to use mysql instead of LDAP. Couldn't find any relevant source. Please help!










    share|improve this question

























      0












      0








      0







      I'm trying to install shibboleth IDP and SP in windows machine. My aim is to use mysql instead of LDAP. Couldn't find any relevant source. Please help!










      share|improve this question













      I'm trying to install shibboleth IDP and SP in windows machine. My aim is to use mysql instead of LDAP. Couldn't find any relevant source. Please help!







      shibboleth






      share|improve this question













      share|improve this question











      share|improve this question




      share|improve this question










      asked Nov 13 '18 at 6:30









      vamsi

      63




      63
























          1 Answer
          1






          active

          oldest

          votes


















          1














          If you are asking how to configure Shibboleth IdP to provide attributes derived from a MySQL source, you would use the <DataConnector> element. The following example connects to the database shibboleth at mysqldb.example.com and defines the attribute sn:



          # In the file attribute-resolver.xml (version 3.3 of Shibboleth Idp)
          <AttributeDefinition
          xmlns="urn:mace:shibboleth:2.0:resolver:ad"
          xsi:type="Simple" id="sn" sourceAttributeID="sn">
          <Dependency ref="mysqlconnector" />
          <AttributeEncoder xsi:type="SAML2String"
          xmlns="urn:mace:shibboleth:2.0:attribute:encoder"
          name="urn:oid:2.5.4.4" friendlyName="sn" />
          </AttributeDefinition>

          <DataConnector id="mysqlconnector" xsi:type="RelationalDatabase">
          <ApplicationManagedConnection
          jdbcDriver="com.mysql.jdbc.Driver"
          jdbcURL="jdbc:mysql://mysqldb.example.com/shibboleth"
          jdbcUserName="username"
          jdbcPassword="password" />
          <QueryTemplate>
          <![CDATA[
          SELECT sn
          FROM users
          WHERE userid='$resolutionContext.principal'
          ]]>
          </QueryTemplate>
          </DataConnector>


          Note that the above works with Shibboleth Idp version 3.3; for more information, see the Shibboleth RelationalDatabaseConnector documentation.






          share|improve this answer





















            Your Answer






            StackExchange.ifUsing("editor", function () {
            StackExchange.using("externalEditor", function () {
            StackExchange.using("snippets", function () {
            StackExchange.snippets.init();
            });
            });
            }, "code-snippets");

            StackExchange.ready(function() {
            var channelOptions = {
            tags: "".split(" "),
            id: "1"
            };
            initTagRenderer("".split(" "), "".split(" "), channelOptions);

            StackExchange.using("externalEditor", function() {
            // Have to fire editor after snippets, if snippets enabled
            if (StackExchange.settings.snippets.snippetsEnabled) {
            StackExchange.using("snippets", function() {
            createEditor();
            });
            }
            else {
            createEditor();
            }
            });

            function createEditor() {
            StackExchange.prepareEditor({
            heartbeatType: 'answer',
            autoActivateHeartbeat: false,
            convertImagesToLinks: true,
            noModals: true,
            showLowRepImageUploadWarning: true,
            reputationToPostImages: 10,
            bindNavPrevention: true,
            postfix: "",
            imageUploader: {
            brandingHtml: "Powered by u003ca class="icon-imgur-white" href="https://imgur.com/"u003eu003c/au003e",
            contentPolicyHtml: "User contributions licensed under u003ca href="https://creativecommons.org/licenses/by-sa/3.0/"u003ecc by-sa 3.0 with attribution requiredu003c/au003e u003ca href="https://stackoverflow.com/legal/content-policy"u003e(content policy)u003c/au003e",
            allowUrls: true
            },
            onDemand: true,
            discardSelector: ".discard-answer"
            ,immediatelyShowMarkdownHelp:true
            });


            }
            });














            draft saved

            draft discarded


















            StackExchange.ready(
            function () {
            StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fstackoverflow.com%2fquestions%2f53275069%2fhow-to-connect-shibboleth-idp-to-mysql-instead-of-ldap-server%23new-answer', 'question_page');
            }
            );

            Post as a guest















            Required, but never shown

























            1 Answer
            1






            active

            oldest

            votes








            1 Answer
            1






            active

            oldest

            votes









            active

            oldest

            votes






            active

            oldest

            votes









            1














            If you are asking how to configure Shibboleth IdP to provide attributes derived from a MySQL source, you would use the <DataConnector> element. The following example connects to the database shibboleth at mysqldb.example.com and defines the attribute sn:



            # In the file attribute-resolver.xml (version 3.3 of Shibboleth Idp)
            <AttributeDefinition
            xmlns="urn:mace:shibboleth:2.0:resolver:ad"
            xsi:type="Simple" id="sn" sourceAttributeID="sn">
            <Dependency ref="mysqlconnector" />
            <AttributeEncoder xsi:type="SAML2String"
            xmlns="urn:mace:shibboleth:2.0:attribute:encoder"
            name="urn:oid:2.5.4.4" friendlyName="sn" />
            </AttributeDefinition>

            <DataConnector id="mysqlconnector" xsi:type="RelationalDatabase">
            <ApplicationManagedConnection
            jdbcDriver="com.mysql.jdbc.Driver"
            jdbcURL="jdbc:mysql://mysqldb.example.com/shibboleth"
            jdbcUserName="username"
            jdbcPassword="password" />
            <QueryTemplate>
            <![CDATA[
            SELECT sn
            FROM users
            WHERE userid='$resolutionContext.principal'
            ]]>
            </QueryTemplate>
            </DataConnector>


            Note that the above works with Shibboleth Idp version 3.3; for more information, see the Shibboleth RelationalDatabaseConnector documentation.






            share|improve this answer


























              1














              If you are asking how to configure Shibboleth IdP to provide attributes derived from a MySQL source, you would use the <DataConnector> element. The following example connects to the database shibboleth at mysqldb.example.com and defines the attribute sn:



              # In the file attribute-resolver.xml (version 3.3 of Shibboleth Idp)
              <AttributeDefinition
              xmlns="urn:mace:shibboleth:2.0:resolver:ad"
              xsi:type="Simple" id="sn" sourceAttributeID="sn">
              <Dependency ref="mysqlconnector" />
              <AttributeEncoder xsi:type="SAML2String"
              xmlns="urn:mace:shibboleth:2.0:attribute:encoder"
              name="urn:oid:2.5.4.4" friendlyName="sn" />
              </AttributeDefinition>

              <DataConnector id="mysqlconnector" xsi:type="RelationalDatabase">
              <ApplicationManagedConnection
              jdbcDriver="com.mysql.jdbc.Driver"
              jdbcURL="jdbc:mysql://mysqldb.example.com/shibboleth"
              jdbcUserName="username"
              jdbcPassword="password" />
              <QueryTemplate>
              <![CDATA[
              SELECT sn
              FROM users
              WHERE userid='$resolutionContext.principal'
              ]]>
              </QueryTemplate>
              </DataConnector>


              Note that the above works with Shibboleth Idp version 3.3; for more information, see the Shibboleth RelationalDatabaseConnector documentation.






              share|improve this answer
























                1












                1








                1






                If you are asking how to configure Shibboleth IdP to provide attributes derived from a MySQL source, you would use the <DataConnector> element. The following example connects to the database shibboleth at mysqldb.example.com and defines the attribute sn:



                # In the file attribute-resolver.xml (version 3.3 of Shibboleth Idp)
                <AttributeDefinition
                xmlns="urn:mace:shibboleth:2.0:resolver:ad"
                xsi:type="Simple" id="sn" sourceAttributeID="sn">
                <Dependency ref="mysqlconnector" />
                <AttributeEncoder xsi:type="SAML2String"
                xmlns="urn:mace:shibboleth:2.0:attribute:encoder"
                name="urn:oid:2.5.4.4" friendlyName="sn" />
                </AttributeDefinition>

                <DataConnector id="mysqlconnector" xsi:type="RelationalDatabase">
                <ApplicationManagedConnection
                jdbcDriver="com.mysql.jdbc.Driver"
                jdbcURL="jdbc:mysql://mysqldb.example.com/shibboleth"
                jdbcUserName="username"
                jdbcPassword="password" />
                <QueryTemplate>
                <![CDATA[
                SELECT sn
                FROM users
                WHERE userid='$resolutionContext.principal'
                ]]>
                </QueryTemplate>
                </DataConnector>


                Note that the above works with Shibboleth Idp version 3.3; for more information, see the Shibboleth RelationalDatabaseConnector documentation.






                share|improve this answer












                If you are asking how to configure Shibboleth IdP to provide attributes derived from a MySQL source, you would use the <DataConnector> element. The following example connects to the database shibboleth at mysqldb.example.com and defines the attribute sn:



                # In the file attribute-resolver.xml (version 3.3 of Shibboleth Idp)
                <AttributeDefinition
                xmlns="urn:mace:shibboleth:2.0:resolver:ad"
                xsi:type="Simple" id="sn" sourceAttributeID="sn">
                <Dependency ref="mysqlconnector" />
                <AttributeEncoder xsi:type="SAML2String"
                xmlns="urn:mace:shibboleth:2.0:attribute:encoder"
                name="urn:oid:2.5.4.4" friendlyName="sn" />
                </AttributeDefinition>

                <DataConnector id="mysqlconnector" xsi:type="RelationalDatabase">
                <ApplicationManagedConnection
                jdbcDriver="com.mysql.jdbc.Driver"
                jdbcURL="jdbc:mysql://mysqldb.example.com/shibboleth"
                jdbcUserName="username"
                jdbcPassword="password" />
                <QueryTemplate>
                <![CDATA[
                SELECT sn
                FROM users
                WHERE userid='$resolutionContext.principal'
                ]]>
                </QueryTemplate>
                </DataConnector>


                Note that the above works with Shibboleth Idp version 3.3; for more information, see the Shibboleth RelationalDatabaseConnector documentation.







                share|improve this answer












                share|improve this answer



                share|improve this answer










                answered Nov 13 '18 at 12:50









                rlandster

                2,96493969




                2,96493969






























                    draft saved

                    draft discarded




















































                    Thanks for contributing an answer to Stack Overflow!


                    • Please be sure to answer the question. Provide details and share your research!

                    But avoid



                    • Asking for help, clarification, or responding to other answers.

                    • Making statements based on opinion; back them up with references or personal experience.


                    To learn more, see our tips on writing great answers.





                    Some of your past answers have not been well-received, and you're in danger of being blocked from answering.


                    Please pay close attention to the following guidance:


                    • Please be sure to answer the question. Provide details and share your research!

                    But avoid



                    • Asking for help, clarification, or responding to other answers.

                    • Making statements based on opinion; back them up with references or personal experience.


                    To learn more, see our tips on writing great answers.




                    draft saved


                    draft discarded














                    StackExchange.ready(
                    function () {
                    StackExchange.openid.initPostLogin('.new-post-login', 'https%3a%2f%2fstackoverflow.com%2fquestions%2f53275069%2fhow-to-connect-shibboleth-idp-to-mysql-instead-of-ldap-server%23new-answer', 'question_page');
                    }
                    );

                    Post as a guest















                    Required, but never shown





















































                    Required, but never shown














                    Required, but never shown












                    Required, but never shown







                    Required, but never shown

































                    Required, but never shown














                    Required, but never shown












                    Required, but never shown







                    Required, but never shown







                    Popular posts from this blog

                    Bressuire

                    Vorschmack

                    Quarantine