CSCfi / CSCfi/pebbles

Redesign user identification & mail delivery for Shibboleth users

Open
#264 0 comments 0 reactions 0 assignees View on GitHub
backend feature
Dominant language
Python
Stars
8
Forks
7
PR merge metrics
No merged PRs in 30d

Description

Use EPPN for user identification, mail is an optional parameter not used yet, i.e. it's not atm. guaranteed that mail delivery will work if user login with Shibboleth [1].

Then again, nothing guarantees that the mail attribute has a valid value even if it exists.

Also these attributes should be parametrised as different deployments might use different Shibboleth attribute schemas.

1: https://confluence.csc.fi/display/HAKA/Usein+kysytyt+kysymykset#Useinkysytytkysymykset-Sähköpostiosoitekäyttäjänyksilöimisessä

Contributor guide

No contributing guide indexed for this repository

Research direction

Start by tracing the Shibboleth login and user-attribute handling in the Python application. Determine how EPPN and the optional mail attribute are currently used, then clarify the deployment-specific attribute configuration and the expected behavior when mail is absent or invalid.

Written by the indexing model from the issue text.

Assessment

Tech stack
python
Domain
authentication, backend
Issue type
Refactor
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.