Validation of protocol message signature failed

kotesh201 koteshwarv at gmail.com
Tue Jul 2 00:35:02 EDT 2013


Hi Scott/Peter,

To be specific, I am using SP .jks file in IDP tester code to generate the
saml authn signed request and redirecting to IDP. I could see the complete
saml authn request in idp-process.log with signature information. The
<X509Certificate> in the signature in the idp-process.log is matching the 
sp.crt information which I used for signing the saml authn request.

Since my IDP tester code is stand alone, there is no way to have sp metadata
file. To validate the signed saml request, I copied the CA cert into
idp-metadata.xml but this is not correct as per your suggestion.
Generally in which config file do we keep the CA cert information on IDP.

Can you pls suggest on this. 



--
View this message in context: http://shibboleth.1660669.n2.nabble.com/Validation-of-protocol-message-signature-failed-tp7587981p7588085.html
Sent from the Shibboleth - Users mailing list archive at Nabble.com.


More information about the users mailing list