Error in Shibboleth IdP

Geo P.C. pcgeopc at gmail.com
Wed Mar 21 11:16:31 GMT 2012


We are able to test both servers shibboleth idp and shibboleth sp in two
different servers seperately with testshib. So let me know whether we can
avoid testshib and we can use our shibboleth idp and sp for SSO
authentication. Please update me.

Thanks
Geo


On Wed, Mar 21, 2012 at 12:44 PM, Geo P.C. <pcgeopc at gmail.com> wrote:

> We configured Shibboleth IdP as per the instruction in
> https://wiki.shibboleth.net/confluence/display/SHIB2/IdPInstall and
> tested with testshib. While testing Identity Provider through
> https://sp.testshib.org/ we given the entityID as
> https://shibboleth.citrus.local/idp/shibboleth but we are getting an
> error message in browser as follows:
> ------------- ERROR
>
> An error occurred while processing your request. Please contact your
> helpdesk or user ID office for assistance.
>
> This service requires cookies. Please ensure that they are enabled and try
> your going back to your desired resource and trying to login again.
>
> Use of your browser's back button may cause specific errors that can be
> resolved by going back to your desired resource and trying to login again.
>
> If you think you were sent here in error, please contact technical support
> *Error Message: Error decoding authentication request message*
> *-----------------*
> *In idp-process.log it shows:*
> **
> 12:33:18.417 - INFO [Shibboleth-Access:74] -
> 20120321T070318Z|192.168.1.75|shibboleth.citrus.local:443|/profile/SAML2/Redirect/SSO|
> 12:33:19.459 - ERROR
> [edu.internet2.middleware.shibboleth.idp.authn.AuthenticationEngine:618] -
> No user identified by login handler.
> 12:33:19.467 - ERROR
> [edu.internet2.middleware.shibboleth.idp.authn.AuthenticationEngine:563] -
> Authentication failed with the error:
> edu.internet2.middleware.shibboleth.idp.authn.AuthenticationException: No
> user identified by login handler.
>  at
> edu.internet2.middleware.shibboleth.idp.authn.AuthenticationEngine.validateSuccessfulAuthentication(AuthenticationEngine.java:619)
> [shibboleth-identityprovider-2.3.6.jar:na]
> ................
>   12:33:19.475 - INFO [Shibboleth-Access:74] -
> 20120321T070319Z|192.168.1.75|shibboleth.citrus.local:443|/profile/SAML2/Redirect/SSO|
> 12:33:19.481 - WARN
> [edu.internet2.middleware.shibboleth.idp.profile.saml2.SSOProfileHandler:373]
> - Error decoding authentication request message
> org.opensaml.ws.message.decoder.MessageDecodingException: No SAMLRequest
> or SAMLResponse query path parameter, invalid SAML 2 HTTP Redirect message
>  ---------------------
>  Can anyone please help us on it.
>
>  Thanks
>
> Geo
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20120321/eb6420ba/attachment.html 


More information about the users mailing list