Message: Signature required
TchouK
royer.matthieu at gmail.com
Thu May 2 09:48:16 EDT 2013
Hello
I have a Shibboleth SP who talks with an Ping Federate IdP.
When I try to login I've got that error :
/SAML response contained an error.
Error from identity provider:
Status: urn:oasis:names:tc:SAML:2.0:status:Requester
Message: Signature required/
in the Shibboleth log I can see :
/</ds:Signature><samlp:Status><samlp:StatusCode
Value="urn:oasis:names:tc:SAML:2.0:status:Requester"/><samlp:StatusMessage>Signature
required</samlp:StatusMessage></samlp:Status></samlp:Response> 1367502099
DEBUG OpenSAML.MessageDecoder.SAML2 [6]: extracting issuer from SAML 2.0
protocol message 1367502099 DEBUG OpenSAML.MessageDecoder.SAML2 [6]: message
from (pf:air_asp_val_dmz:saml2) 1367502099 DEBUG
OpenSAML.MessageDecoder.SAML2 [6]: searching metadata for message issuer...
1367502099 DEBUG OpenSAML.SecurityPolicyRule.MessageFlow [6]: evaluating
message flow policy (replay checking on, expiration 60) 1367502099 DEBUG
XMLTooling.StorageService [6]: inserted record (NGP1CdB.o2XnCfeTLh-e8nvn6ru)
in context (MessageFlow) 1367502099 DEBUG
OpenSAML.SecurityPolicyRule.XMLSigning [6]: validating signature profile
1367502099 DEBUG XMLTooling.TrustEngine.ExplicitKey [6]: attempting to
validate signature with the peer's credentials 1367502099 DEBUG
XMLTooling.TrustEngine.ExplicitKey [6]: signature validated with credential
1367502099 DEBUG OpenSAML.SecurityPolicyRule.XMLSigning [6]: signature
verified against message issuer 1367502099 DEBUG Shibboleth.SSO.SAML2 [6]:
processing message against SAML 2.0 SSO profile/
I can't understand what it doesn't work, I think it's a little thing but I
can't find it.
Anyone can help me ?
Matthieu
--
View this message in context: http://shibboleth.1660669.n2.nabble.com/Message-Signature-required-tp7586543.html
Sent from the Shibboleth - Users mailing list archive at Nabble.com.
More information about the users
mailing list