Hi List!
I have two questions I'm sure you can help to figure out:
One regarding what would you think it would be the best approach when
you need several IDP's (imagine an external one at your customer infrastructure
for their internal stuff to access our application and an internal one for
application local related users).
Somehow the correct IDP (the one responsible for delivering the token)
will have to be resolved and the main doubt is about whether this "correct" IDP
should be resolved directly from the plugin in the container or it should be
always resolved by the internal IDP (some kind of redirect to the correct IDP
if this "internal" one cannot answer about the authentication issue requested).
The second question would be about the existance of support for this
"IDP resolution" feature in the project (CXF)
As an attachment I summarize in a draft what could be the approach.
Thanks in advance for your time,
Kind regards,
Fran