IdP: Returning emailAddress as NameId in SAMLResponse Assertion
Kevin P. Foote
kpfoote at iup.edu
Thu Nov 21 12:38:13 EST 2013
On Thu, 21 Nov 2013, vyal2k wrote:
> I have set the log level to DEBUG. I checked my LDAP directory and can see user has value for "mail" attribute.
> I have attached the idp-process.log, attribute-resolver.xml and attribute-filter.xml.
>
> Let me know if i am missing something here.
21:55:11.044 - DEBUG [edu.vt.middleware.ldap.Ldap:193] - Search with the
following parameters:
21:55:11.045 - DEBUG [edu.vt.middleware.ldap.Ldap:194] - dn =
dc=maxcrc,dc=com
21:55:11.045 - DEBUG [edu.vt.middleware.ldap.Ldap:195] - filter =
(uid=user1)
21:55:11.045 - DEBUG [edu.vt.middleware.ldap.Ldap:196] - filterArgs =
[]
Again, you do not have any attributes to work with. So you can not encode
anything. You need to get your attribute resolver figured out. This
*could* mean you have a problem with your ldap connection at your resolver
or something.
------
thanks
kevin.foote
More information about the users
mailing list