Service provider unable to load private key from file

Cantor, Scott cantor.2 at osu.edu
Mon Sep 16 14:38:12 EDT 2013


On 9/16/13 2:31 PM, "Brian Reindel" <brian at reindel.com> wrote:

>Thank you for the openssl snippet. The key was output unencrypted, and
>it is valid. The key/cert are whatever is generated by using keygen.

Given the incorrect permissions involved, the other thing probably worth
checking is for all the other permissions on directories like
/var/cache/shibboleth, /var/run/shibboleth, and /var/log/shibboleth

There are brute force chowns in the init script because of the ownership
change in 2.5, so starting it up with /etc/init.d/shibd is probably an
advisable thing to try.

-- Scott




More information about the users mailing list