+++ /dev/null
-Version 2.0, shibsp Library version "1_0"
-
-This release works with SAML library version "2_0".
-
-Please read the README.txt and INSTALL.txt files in the same directory
-with this file before continuing. More general information is available
-there. This file documents the particulars of building from source on
-Windows NT/2000/XP.
-
-Visual C++ 8.0 (Visual Studio 2005) on Windows is currently supported.
-The Shibboleth.sln solution file is located in the root of the distribution.
-
-You'll need to indicate to the compiler where the dependency include and
-library files are. Using the global directory settings is the easiest way.
-
-You can choose which, if any, web server modules to build, in case you don't
-need or want one or more of them.
-
-For more information about Windows builds, please read the OpenSAML
-INSTALL-WIN32.txt file.
Release Notes
Shibboleth Native SP
-2.0RC1
-1/23/2007
+2.0
+3/17/2008
NOTE: The shibboleth2.xml configuration format in this release
-is not compatible with earlier releases. Please start from scratch
-or manually copy settings over. This version will remain compatible
-with the final release.
+is compatible with the RC1 release. Upgrading from earlier
+releases is NOT supported without replacing the configuration
+file and reapplying changes.
-Fully Supported (no major changes planned prior to stable release)
+Fully Supported
- SAML 1.0, 1.1, 2.0 Single Sign-On
- Shibboleth 1.x request profile
- ADFS WS-Federation Support
- SSO and SLO
+ - experimental support for SAML 2.0 assertions
- Shibboleth WAYF and SAML DS protocols for IdP Discovery
- Simple "blob" signing
- TLS X.509 certificate authentication
-- Client transport authentication to SOAP endpoints
+- Client transport authentication to SOAP endpoints via libcurl
- TLS X.509 client certificates
- Basic-Auth
- - Digest-Auth
- - NTLM
+ - Digest-Auth (untested)
+ - NTLM (untested)
- Encryption
- All incoming SAML 2 encrypted element types (Assertion, NameID, Attribute)
- Enhanced Spoofing Detection
- Detects and blocks client headers that would match known attribute headers
+ - Does not support Apache mod_rewrite, but can be disabled when necessary
- ODBC Clustering Support
- - Only tested against Microsoft SQL Server using MS and FreeDTS ODBC drivers
+ - Tested against a few different servers with various drivers
- RequestMap enhancements
- Regular expression matching for hosts and paths
- mdquery for interrogating via metadata configuration
- resolvertest for exercising attribute extraction, filtering, and resolution
-------
-
-Not Yet Supported
-
-- Migrating 1.3 configuration files
-
-------
+- Migrating 1.3 core configuration file
+ - Stylesheet can handle some common options
%docdir %{_datadir}/doc/%{name}
%{_datadir}/doc/%{name}/CREDITS.txt
%{_datadir}/doc/%{name}/FASTCGI.LICENSE
-%{_datadir}/doc/%{name}/INSTALL.txt
%{_datadir}/doc/%{name}/LICENSE.txt
%{_datadir}/doc/%{name}/LOG4CPP.LICENSE
%{_datadir}/doc/%{name}/logo.jpg
%{_datadir}/doc/%{name}/OPENSSL.LICENSE
%{_datadir}/doc/%{name}/README.txt
%{_datadir}/doc/%{name}/RELEASE.txt
-%exclude %{_datadir}/doc/%{name}/INSTALL-WIN32.txt
%files devel
%defattr(-,root,root,-)