If the super-tenant is the one who is deploying and sharing the application
then this configuration needs to be done in the
application-authentication.xml if we are talking about IS 5.0.0. In earlier
versions we used the sso-idp-config.xml for the same purpose (limited to
only SAML SSO).

However if its a tenant who is going to share the application and give
access to other tenants, it is not a model we support out of the box till
now. These would be some of the concerns addressed with Carbon 5.0.0.
However there may be work-arounds to achieve the same effect.


On Wed, Apr 30, 2014 at 11:31 AM, Suresh Attanayaka <[email protected]> wrote:

> Hi Team,
>
> How we can achieve the $subect ? Think of a scenario where IS is used in
> the multi-tenanted mode. One tenant has a web app hosted somewhere outside.
> Now this tenant wants other tenants to acess the same application.
> In our model, in this case each and every tenant has to do the Service
> Provider configuration in order them to be able to access the application.
>
>    1. One option would be to copy the same configuration across the
>    tenants who needs to access this application (this means copying the SAML
>    issuer , OAuth key-secretes etc).
>    2. Another Option would be to write
>    ApplicationDAO, SSOServiceProviderConfigManager, OAuthAppDAO to read
>    configurations accross tenants
>
>
> What would be the best option ? are there other approaches ?
>
> Thanks,
> -Suresh
>
> --
> Suresh Attanayake
> Senior Software Engineer; WSO2 Inc. http://wso2.com/
> Blog : http://sureshatt.blogspot.com/
> Web : http://www.ssoarcade.com/
> Facebook : https://www.facebook.com/IdentityWorld
> Twitter : https://twitter.com/sureshatt
> LinkedIn : http://lk.linkedin.com/in/sureshatt
> Mobile : +94755012060
> Mobile : +016166171172
>



-- 
Thanks & Regards,

*Johann Dilantha Nallathamby*
Senior Software Engineer
Integration Technologies Team
WSO2, Inc.
lean.enterprise.middleware

Mobile - *+94777776950*
Blog - *http://nallaa.wordpress.com <http://nallaa.wordpress.com>*
_______________________________________________
Dev mailing list
[email protected]
http://wso2.org/cgi-bin/mailman/listinfo/dev

Reply via email to