Occasional SAML exception during SP/IdP handshake

Peter Schober peter.schober at univie.ac.at
Fri Jul 26 05:21:39 EDT 2013


* Saimon Moore <saimonmoore at gmail.com> [2013-07-26 11:14]:
> IdP (from the EDS and before authenticating with the IdP).

That message is not from the EDS and it is not before authentication
at the IDP.

>     opensaml::FatalProfileException at (
> https://shibtest.teambox.com/Shibboleth.sso/SAML2/POST)
> 
>     SAML response contained an error.
> 
>     Error from identity provider:
> 
>         Status: urn:oasis:names:tc:SAML:2.0:status:Responder
>         Sub-Status: urn:oasis:names:tc:SAML:2.0:status:AuthnFailed

Well, it clearly says "Error from idrentity provider" and the IdP said
"authentication unless you're requesting a specifc authentication
method from that IDP which the IdP cannot provide, there's nothing the
SP can do about it. It's an error from the IdP, after all.
-peter


More information about the users mailing list