In addition to OpenID it would be nice if the web interface could use SAML2 authentication. It looks like Ipsilon would do most of the work for this. It can also use openid, so maybe it could replace the openid support code while providing both openid and saml2 support.
If someone wants to make this work, I will happily review it, but for my current needs, I don't need it, so I will not be the one doing the work.
Just to be clear, if someone wants to work on it, not only will I review it, but also answer questions and help where I can :)
I am not sure how much time I will have to work on a change. But I'll try to look enough to see how much work it is. It's possible that it might not be that much using Ipsilon.
I would suggest looking into mod_auth_mellon, it's a pretty decent SAML2 RP implementation.
A very easy way to set this up is with ipsilon-client-install, especially together with the server, since it will setup everything automatically for you.
Metadata Update from @wombelix: - Issue set to the milestone: 6.0 - Issue tagged with: RFE