Validation of protocol message signature failed
kotesh201
koteshwarv at gmail.com
Tue Jul 2 00:35:02 EDT 2013
Hi Scott/Peter,
To be specific, I am using SP .jks file in IDP tester code to generate the
saml authn signed request and redirecting to IDP. I could see the complete
saml authn request in idp-process.log with signature information. The
<X509Certificate> in the signature in the idp-process.log is matching the
sp.crt information which I used for signing the saml authn request.
Since my IDP tester code is stand alone, there is no way to have sp metadata
file. To validate the signed saml request, I copied the CA cert into
idp-metadata.xml but this is not correct as per your suggestion.
Generally in which config file do we keep the CA cert information on IDP.
Can you pls suggest on this.
--
View this message in context: http://shibboleth.1660669.n2.nabble.com/Validation-of-protocol-message-signature-failed-tp7587981p7588085.html
Sent from the Shibboleth - Users mailing list archive at Nabble.com.
More information about the users
mailing list