Page tree

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Changed version to 1.8.1, and added info about oid2name attribute map.

...

http://code.google.com/p/simplesamlphp/downloads/

Note

Note
This document was written for simpleSAMLphp 1.6.2.
If you notice significant difference between it and the version you are trying to install, please let us know.

Code Block
Install it in /var, then sym link it to simplesamlphp:
ln -s /var/simplesamlphp-1.68.21 /var/simplesamlphp

Configure Apache

...

Code Block
In /var/simplesamlphp/config/config.php set 'auth.adminpassword' to the password of your choosing, then set the following:

'technicalcontact_name'     => 'Your app or department name',
'technicalcontact_email'    => 'your.support.email@ucsf.edu',

Also, set oid2name attribute mapper in the authproc.sp section. It should look like this:

Code Block

'authproc.sp' => array(
        /*
        10 => array(
                'class' => 'core:AttributeMap', 'removeurnprefix'
        ),
        */

        /* When called without parameters, it will fallback to filter attributes ‹the old way›
         * by checking the 'attributes' parameter in metadata on SP hosted and IdP remote.
         */
        50 => 'core:AttributeLimit', 
        51 => array('class' => 'core:AttributeMap', 'oid2name'),
        /*
         * Generate the 'group' attribute populated from other variables, including eduPersonAffiliation.
         */
        60 => array('class' => 'core:GenerateGroups', 'eduPersonAffiliation'),
        // All users will be members of 'users' and 'members'   
        61 => array('class' => 'core:AttributeAdd', 'groups' => array('users', 'members')),
        
        // Adopts language from attribute to use in UI
        90 => 'core:LanguageAdaptor',

),

Convert MyAccess Metadata

...