Issue with URL re-direct after IDP authentication - signing Assertion
justin9
justin9 at ymail.com
Thu Jul 11 11:02:05 EDT 2013
I see the below on my shib log after first attempt , clearly it doesnt sign -
2013-07-11 10:55:00 INFO Shibboleth.Listener : listener service starting
2013-07-11 10:59:56 DEBUG Shibboleth.Listener [1]: dispatching message
(default::getHeaders::Application)
2013-07-11 10:59:56 DEBUG Shibboleth.Listener [1]: dispatching message
(default/Login::run::SAML2SI)
2013-07-11 10:59:56 DEBUG XMLTooling.StorageService [1]: inserted record
(9ab77b8dfff3ece2a282903b3276be7e49cda38a7c2d886c5341e9449dbb01b1) in
context (RelayState) with expiration (1373555396)
2013-07-11 10:59:56 DEBUG OpenSAML.MessageEncoder.SAML2Redirect [1]:
validating input
2013-07-11 10:59:56 DEBUG OpenSAML.MessageEncoder.SAML2Redirect [1]:
marshalling, deflating, base64-encoding the message
2013-07-11 10:59:56 DEBUG OpenSAML.MessageEncoder.SAML2Redirect [1]:
marshalled message:
<samlp:AuthnRequest xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol"
AssertionConsumerServiceURL="https://nihcc.triroundup.com/Shibboleth.sso/SAML2/POST"
Destination="https://citdecadssoweb.cit.nih.gov/affwebservices/public/saml2sso"
ID="_719d0b091757ec240226b5e06b975bc0" IssueInstant="2013-07-11T14:59:56Z"
ProtocolBinding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST"
Version="2.0"><saml:Issuer
xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">https://nihcc.triroundup.com/shibboleth</saml:Issuer><samlp:NameIDPolicy
AllowCreate="1"/></samlp:AuthnRequest>
2013-07-11 10:59:56 DEBUG OpenSAML.MessageEncoder.SAML2Redirect [1]: signing
the message
2013-07-11 10:59:56 DEBUG OpenSAML.MessageEncoder.SAML2Redirect [1]: message
encoded, sending redirect to client
--
View this message in context: http://shibboleth.1660669.n2.nabble.com/Issue-with-URL-re-direct-after-IDP-authentication-signing-Assertion-tp7588400p7588404.html
Sent from the Shibboleth - Users mailing list archive at Nabble.com.
More information about the users
mailing list