Cantor, Scott cantor.2 at
Tue Sep 13 18:25:55 BST 2011

On 9/13/11 1:21 PM, "Liam Hoekenga" <liamr at> wrote:
>I am experimenting with setting up a local federation.  It appears as
>if the issues is related to my metadata (which I *have* validated
>using xmlsectool). The scoping filter works when I access the same SP
>using the same IdP via the InCommon metadata.  I diffed my IdP's
>entries in the two files and nothing jumped out.

You can't have duplicates. That is not supported. However if they're
identical, then it wouldn't matter which was in use. They will not be
merged or harmonized.

>We're using the attribute-policy.xml as distributed w/ the SP source code.
>The only difference in the transaction (as far as I can tell) is which
>file the SP uses for the IdP's metadata.

Then they can't be the same.

-- Scott

