This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision | ||
docpublic:systemes:shibboleth:idpv4xc8 [2021/06/09 15:19] adminjp [personnaliser la page de login interne] |
docpublic:systemes:shibboleth:idpv4xc8 [2021/06/30 17:48] (current) adminjp [personnaliser la page de login interne] |
||
---|---|---|---|
Line 325: | Line 325: | ||
< | < | ||
- | [root@idpx opt]# mkdir shibidp-src-4.1.0 | + | [root@idpx opt]# mkdir shibidp-src-4.1.2 |
- | [root@idpx opt]# cd shibidp-src-4.1.0/ | + | [root@idpx opt]# cd shibidp-src-4.1.2/ |
- | [root@idpx shibidp-src-4.1.0]# wget https:// | + | [root@idpx shibidp-src-4.1.2]# wget https:// |
- | --2021-05-10 21: | + | |
- | [root@idpx shibidp-src]# | + | [root@idpx shibidp-src]# |
- | [root@idpx shibidp-src]# | + | [root@idpx shibidp-src]# |
- | [root@idpx shibboleth-identity-provider-4.1.0]# ls | + | [root@idpx shibboleth-identity-provider-4.1.2]# ls |
bin conf credentials | bin conf credentials | ||
</ | </ | ||
Line 342: | Line 342: | ||
< | < | ||
- | [root@idpx shibboleth-identity-provider-4.1.0]# ./ | + | [root@idpx shibboleth-identity-provider-4.1.2]# ./ |
- | Buildfile: / | + | Buildfile: / |
install: | install: | ||
- | Source (Distribution) Directory (press < | + | Source (Distribution) Directory (press < |
Installation Directory: [/ | Installation Directory: [/ | ||
- | INFO [net.shibboleth.idp.installer.V4Install: | + | INFO [net.shibboleth.idp.installer.V4Install: |
Host Name: [idpx.intbstsp.fr] ? | Host Name: [idpx.intbstsp.fr] ? | ||
idpex.imtbstsp.eu | idpex.imtbstsp.eu | ||
Line 369: | Line 369: | ||
INFO [net.shibboleth.idp.installer.V4Install: | INFO [net.shibboleth.idp.installer.V4Install: | ||
- | INFO [net.shibboleth.idp.installer.BuildWar: | + | INFO [net.shibboleth.idp.installer.BuildWar: |
INFO [net.shibboleth.idp.installer.BuildWar: | INFO [net.shibboleth.idp.installer.BuildWar: | ||
INFO [net.shibboleth.idp.installer.BuildWar: | INFO [net.shibboleth.idp.installer.BuildWar: | ||
Line 382: | Line 382: | ||
< | < | ||
- | [root@idpx shibboleth-identity-provider-4.0.1]# ls -l / | + | [root@idpx shibboleth-identity-provider-4.1.2]# ls -l / |
total 36 | total 36 | ||
- | -rw------- 1 root root 1525 10 mai 22:16 idp-backchannel.crt | + | -rw------- 1 root root 1517 11 juin 15:18 idp-backchannel.crt |
- | -rw------- 1 root root 3409 10 mai 22:16 idp-backchannel.p12 | + | -rw------- 1 root root 3399 11 juin 15:18 idp-backchannel.p12 |
- | -rw------- 1 root root 1525 10 mai 22:15 idp-encryption.crt | + | -rw------- 1 root root 1517 11 juin |
- | -rw------- 1 root root 2455 10 mai 22:15 idp-encryption.key | + | -rw------- 1 root root 2459 11 juin |
- | -rw------- 1 root root 1525 10 mai 22:15 idp-signing.crt | + | -rw------- 1 root root 1517 11 juin |
- | -rw------- 1 root root 2459 10 mai 22:15 idp-signing.key | + | -rw------- 1 root root 2455 11 juin |
- | -rw------- 1 root root 502 10 mai 22:17 sealer.jks | + | -rw------- 1 root root 502 11 juin 15:19 sealer.jks |
- | -rw------- 1 root root | + | -rw------- 1 root root |
- | -rw------- 1 root root 581 10 mai 22:17 secrets.properties | + | -rw------- 1 root root 581 11 juin 15:19 secrets.properties |
</ | </ | ||
Line 398: | Line 398: | ||
< | < | ||
- | [root@idpx shibboleth-identity-provider-4.0.1]# chown -R tomcat / | + | [root@idpx shibboleth-identity-provider-4.1.2]# chown -R tomcat / |
</ | </ | ||
Line 466: | Line 466: | ||
[root@idpx war]# cd / | [root@idpx war]# cd / | ||
[root@idpx lib]# wget https:// | [root@idpx lib]# wget https:// | ||
- | --2020-07-05 11: | ||
</ | </ | ||
Line 475: | Line 474: | ||
< | < | ||
- | [root@idpx]# | + | [root@idpx]# |
[root@idpx] cd webapp/ | [root@idpx] cd webapp/ | ||
[root@idpx webapp]# ls | [root@idpx webapp]# ls | ||
- | css images | + | css images |
[root@idpx webapp]# cd WEB-INF/ | [root@idpx webapp]# cd WEB-INF/ | ||
[root@idpx WEB-INF]# ls | [root@idpx WEB-INF]# ls | ||
Line 489: | Line 488: | ||
< | < | ||
- | [root@idpx shibboleth-identity-provider-4.1.0]# ./ | + | [root@idpx shibboleth-identity-provider-4.1.2]# ./ |
- | Buildfile: /opt/ | + | Buildfile: / |
install: | install: | ||
- | Source (Distribution) Directory (press < | + | Source (Distribution) Directory (press < |
Installation Directory: [/ | Installation Directory: [/ | ||
- | INFO [net.shibboleth.idp.installer.V4Install: | + | INFO [net.shibboleth.idp.installer.V4Install: |
- | INFO [net.shibboleth.idp.installer.BuildWar: | + | INFO [net.shibboleth.idp.installer.BuildWar: |
INFO [net.shibboleth.idp.installer.BuildWar: | INFO [net.shibboleth.idp.installer.BuildWar: | ||
INFO [net.shibboleth.idp.installer.BuildWar: | INFO [net.shibboleth.idp.installer.BuildWar: | ||
Line 504: | Line 503: | ||
BUILD SUCCESSFUL | BUILD SUCCESSFUL | ||
- | Total time: 15 seconds | + | Total time: 7 seconds |
</ | </ | ||
Line 529: | Line 529: | ||
< | < | ||
- | [root@idpx | + | [root@idpx |
### Operating Environment Information | ### Operating Environment Information | ||
operating_system: | operating_system: | ||
operating_system_version: | operating_system_version: | ||
operating_system_architecture: | operating_system_architecture: | ||
- | jdk_version: | + | jdk_version: |
- | available_cores: | + | available_cores: |
- | used_memory: | + | used_memory: |
maximum_memory: | maximum_memory: | ||
### Identity Provider Information | ### Identity Provider Information | ||
- | idp_version: | + | idp_version: |
- | start_time: 2021-05-10T20:42:12.417Z | + | start_time: 2021-06-11T13:36:01.576Z |
- | current_time: | + | current_time: |
- | uptime: | + | uptime: |
enabled modules: | enabled modules: | ||
idp.authn.Password (Password Authentication) | idp.authn.Password (Password Authentication) | ||
idp.admin.Hello (Hello World) | idp.admin.Hello (Hello World) | ||
+ | |||
+ | installed plugins: | ||
+ | |||
+ | service: shibboleth.LoggingService | ||
+ | last successful reload attempt: 2021-06-11T13: | ||
+ | last reload attempt: 2021-06-11T13: | ||
+ | |||
+ | service: shibboleth.AttributeFilterService | ||
+ | last successful reload attempt: 2021-06-11T13: | ||
+ | last reload attempt: 2021-06-11T13: | ||
+ | |||
... | ... | ||
+ | service: shibboleth.ManagedBeanService | ||
+ | last successful reload attempt: 2021-06-11T13: | ||
+ | last reload attempt: 2021-06-11T13: | ||
+ | |||
</ | </ | ||
Line 766: | Line 781: | ||
- | en IDP v4 , mettre l' | + | en IDP v4 , lors du deploiement initial |
< | < | ||
Line 774: | Line 789: | ||
idp.logo=/ | idp.logo=/ | ||
+ | </ | ||
+ | |||
+ | ==== Logo sur views / messages ==== | ||
+ | |||
+ | ref : https:// | ||
+ | |||
+ | en IDP v 4.1.2 pour afficher le logo de l' | ||
+ | |||
+ | - deposer le fichier de logo dans le repertoire | ||
+ | - editer le fichier de porpertis des message pour y definir le parametre idp.logo | ||
+ | - relancer le buid + stop-start de tomcat | ||
+ | |||
+ | === 1) deposer le fichier logo === | ||
+ | |||
+ | < | ||
+ | [root@idp4t shibboleth-idp]# | ||
+ | -rw-r--r-- 1 root root 13640 30 juin 07:53 edit-webapp/ | ||
+ | </ | ||
+ | |||
+ | === 2) messages.properties ==== | ||
+ | |||
+ | < | ||
+ | [root@idp4t shibboleth-idp]# | ||
+ | # You can define message properties here to override messages defined in | ||
+ | # the system-supplied message file or to add your own messages. | ||
+ | idp.logo = / | ||
+ | </ | ||
+ | |||
+ | === 3) re-build === | ||
+ | |||
+ | on rebuild le war afin qu'il soit redeployer dans le webapps de tomcat | ||
+ | |||
+ | < | ||
+ | [root@idp4t shibboleth-idp]# | ||
+ | Buildfile: / | ||
+ | |||
+ | build-war: | ||
+ | Installation Directory: [/ | ||
+ | |||
+ | INFO [net.shibboleth.idp.installer.BuildWar: | ||
+ | INFO [net.shibboleth.idp.installer.BuildWar: | ||
+ | |||
+ | INFO [net.shibboleth.idp.installer.BuildWar: | ||
+ | INFO [net.shibboleth.idp.installer.BuildWar: | ||
+ | |||
+ | BUILD SUCCESSFUL | ||
+ | Total time: 7 seconds | ||
</ | </ | ||
===== Attribute Resolver v4 ===== | ===== Attribute Resolver v4 ===== | ||
Line 1092: | Line 1154: | ||
</ | </ | ||
- | ==== activation ==== | + | ==== activation |
- | activer le module de consentement : https:// | + | activer le module de consentement : |
+ | * https:// | ||
+ | * https:// | ||
< | < | ||
Line 1104: | Line 1168: | ||
[OK] | [OK] | ||
</ | </ | ||
+ | |||
+ | |||
+ | Depuis 4.1.x | ||
+ | |||
+ | < | ||
+ | <!-- Insert bean that references the static terms-of-use from consent-messages.properties --> | ||
+ | <bean id=" | ||
+ | < | ||
+ | </ | ||
+ | |||
+ | </ | ||
+ | |||
+ | ===== Upgrade ===== | ||
+ | |||
+ | https:// | ||
+ | |||
+ | Exemple ici du passage d'une 4.1.0 en 4.1.2 | ||
+ | |||
+ | recuperer les sources | ||
+ | |||
+ | < | ||
+ | [root@idpx opt]# wget https:// | ||
+ | </ | ||
+ | |||
+ | sauver / backup de l' | ||
+ | |||
+ | < | ||
+ | [root@idpx opt]# cp -a shibboleth-idp shibboleth-idp-prod-4.1.0 | ||
+ | </ | ||
+ | |||
+ | desarchiver et se deplacer dans l' | ||
+ | |||
+ | < | ||
+ | [root@idpx opt]# tar xvfz shibboleth-identity-provider-4.1.2.tar.gz | ||
+ | [root@idpx opt]# cd shibboleth-identity-provider-4.1.2 | ||
+ | </ | ||
+ | |||
+ | Lancer l' | ||
+ | |||
+ | < | ||
+ | [root@idpx shibboleth-identity-provider-4.1.2]# | ||
+ | Buildfile: / | ||
+ | |||
+ | install: | ||
+ | Source (Distribution) Directory (press < | ||
+ | |||
+ | Installation Directory: [/ | ||
+ | |||
+ | INFO [net.shibboleth.idp.installer.V4Install: | ||
+ | INFO [net.shibboleth.idp.installer.BuildWar: | ||
+ | INFO [net.shibboleth.idp.installer.BuildWar: | ||
+ | INFO [net.shibboleth.idp.installer.BuildWar: | ||
+ | INFO [net.shibboleth.idp.installer.BuildWar: | ||
+ | |||
+ | BUILD SUCCESSFUL | ||
+ | Total time: 31 seconds | ||
+ | </ | ||
+ | |||
+ | |||
+ | rebuild du war | ||
+ | |||
+ | < | ||
+ | [root@idpx shibboleth-idp]# | ||
+ | Buildfile: / | ||
+ | |||
+ | build-war: | ||
+ | Installation Directory: [/ | ||
+ | |||
+ | INFO [net.shibboleth.idp.installer.BuildWar: | ||
+ | INFO [net.shibboleth.idp.installer.BuildWar: | ||
+ | INFO [net.shibboleth.idp.installer.BuildWar: | ||
+ | INFO [net.shibboleth.idp.installer.BuildWar: | ||
+ | |||
+ | BUILD SUCCESSFUL | ||
+ | Total time: 6 seconds | ||
+ | </ | ||
+ | |||
+ | |||
+ | puis stop/start de tomcat afin de redeployer ce nouveau war . | ||
+ | |||
+ | |||
===== Delegation d' | ===== Delegation d' | ||
Line 1213: | Line 1358: | ||
+## Shibboleth Server Properties | +## Shibboleth Server Properties | ||
- | +shibcas.serverName = https://ssocas6.domain.fr | + | +shibcas.serverName = https://ourIDP.domain.fr |
+ | + | ||
+# By default you always get the AuthenticatedNameTranslator, | +# By default you always get the AuthenticatedNameTranslator, |