--- loncom/html/adm/help/tex/Institutional_Integration_Shibboleth.tex 2021/12/06 21:12:06 1.5 +++ loncom/html/adm/help/tex/Institutional_Integration_Shibboleth.tex 2024/03/03 20:40:19 1.8 @@ -29,6 +29,7 @@ https://wiki.shibboleth.net/confluence/d For Red Hat/CentOS the text to include in a shibboleth.repo file to be placed in /etc/yum.repos.d can be generated at: + https://shibboleth.net/downloads/service-provider/RPMS/ e.g., CentOS 6 @@ -239,13 +240,13 @@ the ``internet domain'' (i.e., the last in /home/httpd/lonTabs/hosts.tab), then LON-CAPA will automatically remove the @somewhere.edu, such that \$r-$>$user will be just username, unless the value of the PerlVar lonSSOEmailOK is 1. -By default, with mod_shib installed and configured, and shibd running, then entries in LON-CAPA's -Apache config file: loncapa_apache.conf will result in display of an authentication +By default, with mod\_shib installed and configured, and shibd running, then entries in LON-CAPA's +Apache config file: loncapa\_apache.conf will result in display of an authentication prompt when a user without a current LON-CAPA session accesses /adm/roles. If it is preferred to display /adm/login configured to offer dual SSO log-in (Shibboleth), and non-SSO login (LON-CAPA), set this using the Domain Configuration available to a Domain Coordinator via the web GUI: -Main Menu $>$ Set domain configuration $>$ Display ("Log-in page options" checked). -For any of the LON-CAPA domain's servers which will offer dual login check "Yes" and then set: +Main Menu $>$ Set domain configuration $>$ Display (``Log-in page options'' checked). +For any of the LON-CAPA domain's servers which will offer dual login check ``Yes'' and then set: \begin{itemize} \item SSO: Text, Image, Alt Text, URL, Tool Tip @@ -254,7 +255,7 @@ For any of the LON-CAPA domain's servers The value in the URL field should be /adm/sso, and the image will be for a button to be clicked to load /adm/sso to prompt for Shibboleth authentication. The alt and title attributes for the -button can also be set. Above the button there will be the text: "Log-in type: " followed by +button can also be set. Above the button there will be the text: ``Log-in type: '' followed by the text entered in the SSO configuration for ``Text''. Below that will be a ``Change'' link used to toggle between SSO and non-SSO log-in panels.