What are you trying to do? Use brokering? That is, you want Keycloak
to delegate authentication to an external SAML IDP? Or, do you want to
connect an existing SAML client to keycloak?
On 10/28/2015 9:01 AM, Mai Zi wrote:
Can anybody help on this ?
Thank you very much.
----- Forwarded Message -----
*From:* Mai Zi <ornot2008(a)yahoo.com>
*To:* "keycloak-user(a)lists.jboss.org" <keycloak-user(a)lists.jboss.org>
*Sent:* Monday, October 26, 2015 4:16 PM
*Subject:* Failed to import IDP meta data into keycloak
Hi, there,
1) We failed to import idp meta data into keycloak (see attachment for
the sample xml). Pls help taka a look what's going on.
2) Suppose we can not import the metadata , based on the sample xml
given in the attachment, which fields should we fill?
3) In the user guide, there is one sentence: "Once you create a SAML
provider, there is an |EXPORT| button that appears when viewing that
provider. Clicking this button will export a SAML entity descriptor
which you can use to"
Here "That provider" means the keycloak as a SP provider ? From
the demo exported data , it seems so. Am I right?
To work with the 3rd party IDP, we should provide the exported
metadata to idp, shouldn't we?
I am not familiar with saml concept so any help will be greatly appreciated.
Mai
_______________________________________________
keycloak-user mailing list
keycloak-user(a)lists.jboss.org
https://lists.jboss.org/mailman/listinfo/keycloak-user
--
Bill Burke
JBoss, a division of Red Hat
http://bill.burkecentral.com