Windows Preparation for Participants

This training course is intended for people with limited to no experience with Shibboleth, but having some other fundamental skills will let you focus on learning Shibboleth.

You will be able to use these VMs with the InCommon Training SP from anywhere for at least 2 weeks following your training, such as if you want to revisit the training materials or tinker with it. You will need to update any manual hostname mapping if your VM acquires a new IP address.

Knowledge required:

Helpful Knowledge to have:

Shibboleth requires that messages passed between the IdP and the SP are in close synchronization time-wise. Please ensure that Windows Time Service is running. If the VM clock falls far out of synch with reality, you may need to manually synchronize the clock:

  1. Right-click on the clock (lower right of VM screen)
  2. Select "Adjust Date/Time"
  3. Click on "Internet Time" tab
  4. Click "Change Settings"
  5. Click "Update now"

Installation on an InCommon-hosted Amazon AWS Instance

You will need administrator (or root) access in your host environment to edit the hosts file. You will be able to use the AWS instances we provide with the InCommon Training SP from anywhere for 2 weeks following your training, such as if you want to revisit the training materials or tinker with it. Make sure you save anything you want to keep within 2 weeks of the workshop, as we do not back up the instances before we spin them down.

  1. Choose a unique, fully-qualified hostnameof the form host.domain.tld. For best results, the hostname should be at least 3 components (two dots). For example, you might choose something like,,, etc. Throughout this workshop, the instructions will refer to this as or MySpecialName.

    The hostname you choose for your VM does not need to resolve anywhere except your own host environment, but it must be unique within the class and it will be visible to the rest of the class. If someone else uses the same hostname as you, bad things will happen™. Please do not use any of the previous example hostnames (in particular, verbatim! Be creative and choose a hostname that you are sure will be unique.

  2. Find out the external IP address of your assigned AWS instance. Typically, the IP address will be part of the instance's DNS name; for example, would correspond to an IP address of If desired, you can confirm this by looking up the DNS name via a command-line utility like host or nslookup, or any other tool of your choosing.
  3. Edit the hosts file on your local laptop, and assign the hostname you chose in step 1 to your AWS instance's external IP address. For Mac or Linux hosts, the file is located at /etc/hosts; for Windows, it is typically located at C:\WINDOWS\system32\drivers\etc\hosts. Add a line similar to the following, substituting your custom hostname and your instance's IP address:

    If you get permission errors on a Windows host, try right-clicking on the hosts file and select "Open as administrator".

  4. Use the Microsoft Remote Desktop client to connect to your instance via RDP, and login as user Administrator. Check with the instructors for the Administrator password.

Installation in a customized environment

If you choose to use a VM hosted in your own environment, please be aware that you will be responsible for addressing any unique environment- or host-related issues. We will try to help but we may be unable to. Participants without sysadmin experience are encouraged to use a provided AWS instance instead.

Select an OS that is supported by the Shibboleth project(or a distribution that is similar) after reading the SP installation instructions for that OS so you know what you're up against. The installers should work with all common versions of Windows, but your mileage may vary. Building from source during the class is a tedious, slow, perilous, and solitary adventure. The instructors are only knowledgeable about supported versions of Windows.