I am trying to implement a use case using SP. For this I have:
Identity Provider: Federation Service (Active Directory). For me it's a black box. The only thing I intend to provide this service is the name, address and home address of the page of my application. I also have to provide XML metadata for my service provider.
Service Provider: Weblogic Server (10.3.4). Here I set up the security areas by creating the Authentication Provider and Credential Mapper Provider. Like I configured the selected server (AdminServer) to work with the Service Provider Role.
Everything is supposed to work fine, but I'm at the same point as Barry (or at least that's what I think ...). When I request a "registered resource" (one of the applications that I registered with our Federated Service system), IDP does not respond to me with the login form.
However, with my setup, Shibboleth works ...
Any ideas?
I follow these articles: http://biemond.blogspot.com/2009/09/sso-with-weblogic-1031-and-saml2.html , http://blogbypuneeth.wordpress.com/2011/01/15/ steps-to-configure-saml-2-on-weblogic-server-10-3-0 / They are not the same thing, but they helped ...
Thanks in advance,
Louis
By the way, these are the actions I did:
- Domain: mydomain
- SAML2: EXTRA_JAVA_PROPERTIES = "$ {EXTRA_JAVA_PROPERTIES} -Dweblogic.debug.DebugSecuritySAMLAtn = true -Dweblogic.debug.DebugSecuritySAMLLib = true -Dweblogic.debug.DebugSecuritySAML2Service = true -Dweblogic.debug.DebugSecuritySAML2CredMap = true -Dweblogic.debug.DebugSecuritySAML2Atn = "
- SSL Weblogic (AdminServer). 7002
- : myHost_domain_com_sample_weblogic_app_2
- : SSO System - myHost.domain.com:7002/myHost_domain_com_sample_weblogic_app_2/
- myHost.domain.com:7002/myHost_domain_com_sample_weblogic_app_2/
- ... /myHost _domain_com_sample_weblogic_app_2/default.jsp
- : myrealm ( )
- : SAML2 AUTH PROVIDER; saml2identityasserter
- : ( JASS)
- Restart
- " - " SAML2 AUTH PROVIDER:
- , SSO
- /home/luis/Documents/domain_AUTH/FederationMetadata.xml . ( OASIS SAML2 SPEC) : . . , .
- : SAML2_CMP; SAML2CredentialMapper
- ( )
- Restart
- SAML2_CMP:
- URI : myHost.domain.com
- : myHost.domain.com
- -: DemoIdentity
- ... Key Pass Phrase: DemoIdentityKeyStorePassPhrase
- Restart
- - : SAML2 SERVICE PROVIDER PARTNER
- /home/luis/Documents/domain _AUTH/FederationMetadata.xml : . . , .
- : , ,
- SAML2 AUTH PROVIDER:
- URI:/myHost_domain_com_sample_weblogic_app_2/default.jsp
- : AdminServer
- SAML2 :
- URL- : localhost: 7001/saml2
- : myHost.domain.com
- SAML2:
, URI Redirect, , , .
, URI Weblogic, "/console/index.jsp", , Identity Provider, ( ).
?
,