SimpleSAMLphp application servers
SimpleSAMLphp is a versatile authentication tool used to enable a federated single sign on experience.
The app-saml
role can configure SimpleSAMLphp to behave in one of two modes:
- A traditional Identity Provider (IdP) using either an internal or external authentication source.
- An Identity Provider Proxy (IdPP) sitting between multiple federations, handling IdP discovery and proxying.
Configuration management
The Salt states create per-platform configuration directories at ~/conf
which contain the IdP and SP configurations and certificates and the application configuration. Your delivery tools should copy this configuration to the SimpleSAMLphp installation directory.