PingFederate OpenToken Sample Application -
i'm trying out sample applications provided pingfederate .net integration kit. able make work single server set-up (my machine served both idp , sp).
but when tried setting 2 machines specified in link: https://documentation.pingidentity.com/display/netik/deploying+the+sample+applications
a more realistic scenario deploy applications on separate iis server machine
i able edit adapter instance , default url there's problem of clock skew between servers
verify server clocks synchronized. if not synchronized, can account adjusting not before tolerance value in opentoken adapter configuration, amount of time (in seconds) allow clock skew between servers. default , recommended value 0.
i checked possible values , max 3600 seconds.
question: if server has more hour of time difference? set-up still possible? (servers on different time zones.)
the opentoken uses gmt, timezones taken out of picture - long server set proper time, , actual proper timezone is, should work fine. example, can have servera in new york city, , serverb in los angeles. if servera set eastern time, , serverb set pacific time, opentoken work - since converts times gmt, times on token "same".
hope makes sense - need cup of coffee morning. :)
Comments
Post a Comment