Add the OpenAthens repo to the
/etc/yum.repos.d/ directory with a .repo extension, e.g:
[openathens-sp] name = yum repository for athens rpms baseurl = https://username:email@example.com/yum/pkgs/rhel$releasever/sp/2.2/$basearch enabled = 1 gpgcheck = 0 failovermethod = priority
For details see: Configuring Yum for OpenAthens SP
Install OpenAthens SP
sudo yum install openathens-sp
For details see: Installing OpenAthens SP on Apache in detail
Generate or install a metadata signing certificate - most federations allow these to be self-signed and last several years. Run the script in the
/usr/share/atacama-platform/keys folder, or insert an existing .pem file in that folder containing both private and public keys.
sudo ./gen_self_signed_cert.sh 'yourdomain.com' 'Short Description'
For details see: Install metadata signing certificates on Apache
/etc/httpd/conf.d/directory. In the file you must also:
For details see: Configuring Apache vhosts for OpenAthens SP
See OpenAthens SP common
You can optionally further restrict access in the vhost before passing the user to your application should you need or wish to. See: Restricting access via vhost.