Occasional SAML exception during SP/IdP handshake
Peter Schober
peter.schober at univie.ac.at
Fri Jul 26 05:21:39 EDT 2013
* Saimon Moore <saimonmoore at gmail.com> [2013-07-26 11:14]:
> IdP (from the EDS and before authenticating with the IdP).
That message is not from the EDS and it is not before authentication
at the IDP.
> opensaml::FatalProfileException at (
> https://shibtest.teambox.com/Shibboleth.sso/SAML2/POST)
>
> SAML response contained an error.
>
> Error from identity provider:
>
> Status: urn:oasis:names:tc:SAML:2.0:status:Responder
> Sub-Status: urn:oasis:names:tc:SAML:2.0:status:AuthnFailed
Well, it clearly says "Error from idrentity provider" and the IdP said
"authentication unless you're requesting a specifc authentication
method from that IDP which the IdP cannot provide, there's nothing the
SP can do about it. It's an error from the IdP, after all.
-peter
More information about the users
mailing list