decryption problem
Cantor, Scott
cantor.2 at osu.edu
Mon Jun 18 04:39:59 BST 2012
On 6/17/12 11:17 PM, "Christopher Bongaarts" <cab at umn.edu> wrote:
>My best guess is that the SP's cert doesn't match the private key, but
>I've had him regenerate keys 3 times now with identical results, so I
>thought I'd at least check before making him do it again...
Well, it's the cert you're being told to use, not the one it happens to
have installed. The other rare possibility is a glitch in the names in the
certificates if the keys are the same but the certificates on each end are
different.
They can try adding extractNames="false" to the CredentialResolver. I
don't think that would affect the situation with those log messages, but
I'd like to investigate further if it does.
-- Scott
More information about the users
mailing list