Automatic user provisioning on Share SSO access only

Question asked by mrvanes on Oct 1, 2010

In the past few weeks I've managed to expose Alfresco using federative login (via mod_shib2 ->REMOTE_USER) and have Share SSO working. However. we don't need and don't want to expose Alfresco Explorer to our users so we force redirect them to Share. But now I just discovered that Share fails to authenticate a non-existant REMOTE_USER if that user has never visited Explorer.

My questions:
- Am I right that only Explorer can auto-provision non-existant REMOTE_USERS?
- Can I provision the non-existant REMOTE_USER in/before Share via some JIT WS call?