Shibd -check error(Tom Scavo) (Cantor, Scott)

Nate Klingenstein ndk at internet2.edu
Wed Jul 25 14:23:07 EDT 2012


Ken,

> I'm trying to register on the TestShib Two site now and I'm getting  
> a denial message due to the fact that idp.example.org is already  
> taken as a domain name(after un-checking the box that resolves  
> domain name validity). Do you know how to get past this without  
> having to reinstall my idp as a new unique name?

Because TestShib apparently already recognizes a tester claiming to  
own idp.example.org there's no great way past this without using your  
own unique domain name.

The name itself isn't actually "built into" the IdP during  
installation; it's just used as a way to generate configuration files  
for you.  Reinstallation will take advantage of this facility and  
regenerate configuration files for you, but you can also search your  
configuration files for all instances of example.org and  
idp.example.org and change them to a more unique value.  Note that in  
that circumstance your autogenerated certificates(/opt/shibboleth-idp/ 
credentials) would still contain idp.example.org(Shibboleth doesn't  
care about this) and you'd want to update your local metadata at /opt/ 
shibboleth-idp/metadata/idp-metadata.xml.

I'll let Scott handle the rest of your comment,
Nate.


More information about the users mailing list