IdP: Returning emailAddress as NameId in SAMLResponse Assertion

Kevin P. Foote kpfoote at iup.edu
Thu Nov 21 12:38:13 EST 2013



On Thu, 21 Nov 2013, vyal2k wrote:

>  I have set the log level to DEBUG. I checked my LDAP directory and can see user has value for "mail" attribute.
> I have attached the idp-process.log, attribute-resolver.xml and attribute-filter.xml.
>
> Let me know if i am missing something here.

21:55:11.044 - DEBUG [edu.vt.middleware.ldap.Ldap:193] - Search with the
following parameters:
21:55:11.045 - DEBUG [edu.vt.middleware.ldap.Ldap:194] -   dn =
dc=maxcrc,dc=com
21:55:11.045 - DEBUG [edu.vt.middleware.ldap.Ldap:195] -   filter =
(uid=user1)
21:55:11.045 - DEBUG [edu.vt.middleware.ldap.Ldap:196] -   filterArgs =
[]


Again, you do not have any attributes to work with.  So you can not encode
anything. You need to get your attribute resolver figured out. This
*could* mean you have a problem with your ldap connection at your resolver
or something.

------
thanks
  kevin.foote


More information about the users mailing list