Yet another Idp error after SP upgrade

Mike Flynn shibbolethlynda at
Mon Aug 12 14:14:03 EDT 2013

Well, you folks are saying that I changed an entityID etc to cause this error - but like I said - I copied etc verbatim.  No change....  Only certain IDps are failing (and still failing now).  In the logs I am getting things like this:

2013-08-12 08:46:44 ERROR OpenSAML.SOAPClient [7]: SOAP client detected a SAML error: (saml1p:Responder) (Message did not meet security requirements)
2013-08-12 08:46:44 ERROR Shibboleth.AttributeResolver.Query [7]: attribute authority returned a SAML error

 From: "Cantor, Scott" <cantor.2 at>
To: Shib Users <users at> 
Sent: Monday, August 12, 2013 10:49 AM
Subject: Re: Yet another Idp error after SP upgrade

On 8/12/13 1:44 PM, "Mike Flynn" <shibbolethlynda at> wrote:
>Without changing any of the files I copied the etc folder from my old
>working system to production so I have not changed anything in this
>config as it sits.  If the upgrade cannot change the metadata, when where
>did this stanza come from on the new server?

I didn't say it couldn't change the metadata generated, I said that can't
matter to anybody unless they are directly consuming it.

And regardless, the metadata is *about* your system, it does not affect
how it runs in and of itself.

-- Scott

To unsubscribe from this list send an email to users-unsubscribe at
-------------- next part --------------
An HTML attachment was scrubbed...

More information about the users mailing list