-all SHIB headers- (HTTP_SHIB_ATTRIBUTES is not shown in this list)
(REMOTE_USER)
(HTTP_REMOTE_USER)

attribute response from the IdP (HTTP_SHIB_ATTRIBUTES):



notes:
The AAP throws away invalid values (eg an unscopedAffiliation of value "myBoss@<yourdomain>" or a value with an invalid scope which scope is checked)
The raw attribute response (HTTP_SHIB_ATTRIBUTES) is NOT filtered by the AAP and should therefore be disabled for most applications (exportAssertion=false).



ALL_HTTP HTTP_CONNECTION:close HTTP_CONTENT_LENGTH:0 HTTP_ACCEPT:*/* HTTP_ACCEPT_ENCODING:gzip, br, zstd, deflate HTTP_COOKIE:ASPSESSIONIDQUSDCBQA=ADHLAFKDGLGOKPOKLNHEFCAK; aoNames=; aoData=; PHPSESSID=moc5cf2bjuq8ch0br4rts0gc7k HTTP_HOST:athenaonline.com HTTP_REFERER:https://athenaonline.com/portal/accounts/uniowa/sso HTTP_USER_AGENT:Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)
ALL_RAW Connection: close Content-Length: 0 Accept: */* Accept-Encoding: gzip, br, zstd, deflate Cookie: ASPSESSIONIDQUSDCBQA=ADHLAFKDGLGOKPOKLNHEFCAK; aoNames=; aoData=; PHPSESSID=moc5cf2bjuq8ch0br4rts0gc7k Host: athenaonline.com Referer: https://athenaonline.com/portal/accounts/uniowa/sso User-Agent: Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)
APPL_MD_PATH /LM/W3SVC/5/ROOT
APPL_PHYSICAL_PATH D:\Websites\AthenaOnline\
AUTH_PASSWORD
AUTH_TYPE
AUTH_USER
CERT_COOKIE
CERT_FLAGS
CERT_ISSUER
CERT_KEYSIZE 256
CERT_SECRETKEYSIZE 2048
CERT_SERIALNUMBER
CERT_SERVER_ISSUER C=GB, S=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
CERT_SERVER_SUBJECT CN=www.athenaonline.com
CERT_SUBJECT
CONTENT_LENGTH 0
CONTENT_TYPE
GATEWAY_INTERFACE CGI/1.1
HTTPS on
HTTPS_KEYSIZE 256
HTTPS_SECRETKEYSIZE 2048
HTTPS_SERVER_ISSUER C=GB, S=Greater Manchester, L=Salford, O=Sectigo Limited, CN=Sectigo RSA Domain Validation Secure Server CA
HTTPS_SERVER_SUBJECT CN=www.athenaonline.com
INSTANCE_ID 5
INSTANCE_META_PATH /LM/W3SVC/5
LOCAL_ADDR 10.0.0.21
LOGON_USER
PATH_INFO /portal/accounts/uniowa/sso/Default.asp
PATH_TRANSLATED D:\Websites\AthenaOnline\portal\accounts\uniowa\sso\Default.asp
QUERY_STRING
REMOTE_ADDR 216.73.216.61
REMOTE_HOST 216.73.216.61
REMOTE_USER
REQUEST_METHOD GET
SCRIPT_NAME /portal/accounts/uniowa/sso/Default.asp
SERVER_NAME athenaonline.com
SERVER_PORT 443
SERVER_PORT_SECURE 1
SERVER_PROTOCOL HTTP/1.1
SERVER_SOFTWARE Microsoft-IIS/10.0
URL /portal/accounts/uniowa/sso/Default.asp
HTTP_CONNECTION close
HTTP_CONTENT_LENGTH 0
HTTP_ACCEPT */*
HTTP_ACCEPT_ENCODING gzip, br, zstd, deflate
HTTP_COOKIE ASPSESSIONIDQUSDCBQA=ADHLAFKDGLGOKPOKLNHEFCAK; aoNames=; aoData=; PHPSESSID=moc5cf2bjuq8ch0br4rts0gc7k
HTTP_HOST athenaonline.com
HTTP_REFERER https://athenaonline.com/portal/accounts/uniowa/sso
HTTP_USER_AGENT Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko; compatible; ClaudeBot/1.0; +claudebot@anthropic.com)