Welcome to OStack Knowledge Sharing Community for programmer and developer-Open, Learning and Share
Welcome To Ask or Share your Answers For Others

Categories

0 votes
1.2k views
in Technique[技术] by (71.8m points)

single sign on - ca siteminder saml sso proxyrule namespace case can not forward

everyone our policyserver is 12.8 and run on redhat and our sampl sso is ok and we access application via relaystate , and we want to access more applications and we want to access : https://fed.test.com.cn/test,https://fed.test.com.cn/prd, we want to judge when is test ,forward to one place ,and judge when is prd ,forward to another place and our proxyrule is here :


<?xml version="1.0"?>
<?cocoon-process type="xslt"?>

<!DOCTYPE nete:proxyrules SYSTEM "file:////app/siteminder/agent/agentfed/secure-proxy/proxy-engine/conf/dtd/proxyrules.dtd">

<!-- Proxy Rules -->
<!-- replace www.example.com with your namespace -->
<nete:proxyrules xmlns:nete="https://fed.test.com.cn/" debug="yes">
<nete:cond criteria="beginswith" type="uri">
<!-- replace /dir1 with an appropriate URI -->
<nete:case value="/test">
<!-- replace http://server1.example.com with the appropriate destination server -->
<nete:forward>https://10.164.29.65$0</nete:forward>
</nete:case>
</nete:cond>
</nete:proxyrules>

but when we passed https://fed.test.com/affwebservices/public/saml2assertionconsumer, we found not forward to destination server. so ,where is wrong ,we did not found errors in logs can anyone help us ? we are in hurry

question from:https://stackoverflow.com/questions/65830961/ca-siteminder-saml-sso-proxyrule-namespace-case-can-not-forward

与恶龙缠斗过久,自身亦成为恶龙;凝视深渊过久,深渊将回以凝视…
Welcome To Ask or Share your Answers For Others

1 Answer

0 votes
by (71.8m points)

Proxy rules don't apply to /affwebservices, that's a different "app" on SPS itself.


与恶龙缠斗过久,自身亦成为恶龙;凝视深渊过久,深渊将回以凝视…
Welcome to OStack Knowledge Sharing Community for programmer and developer-Open, Learning and Share
Click Here to Ask a Question

...