"unable to encrypt NameId" when asking not to encrypt
Brent Putman
putmanb at georgetown.edu
Tue Dec 17 01:40:23 EST 2013
On 12/16/13 11:35 PM, David Bantz wrote:
> With this addition to relying-party.xml
>
> <!-- Disable encryption for Fuzebox per vendor request -->
> <RelyingParty id="www.fuzebox.com"
> the IdP indicates following error while working with the NameId:
> ...
> 18:17:02.949 - DEBUG
> [org.opensaml.security.MetadataCredentialResolver:315] - Retrieving
> metadata for entity 'www.fuzemeeting.com <http://www.fuzemeeting.com>'
> in role '{urn:oasis:names:tc:SAML:2.0:metadata}SPSSODescriptor' for
> protocol 'urn:oasis:names:tc:SAML:2.0:protocol'
>
I think you have an entityID mismatch or similar misconfiguration going
on. "fuzebox.com" != "www.fuzemeeting.com"
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20131217/561d95ba/attachment.html
More information about the users
mailing list