Service provider unable to load private key from file
Brian Reindel
brian at reindel.com
Tue Sep 17 09:55:16 EDT 2013
/var/cache/shibboleth
drwxr-xr-x. 2 shibd shibd 4096 Sep 13 14:04 shibboleth
/var/run/shibboleth
drwxr-xr-x. 2 root root 4096 Sep 17 09:41 shibboleth
/var/log/shibboleth
drwxr-x---. 2 shibd shibd 4096 Sep 17 09:12 shibboleth
These were created as a part of the installation, so we haven't changed them.
With regard to OpenSSL, is there a version you recommend? Our system
admin mentioned that we might be running an older version, and that
could be causing the issue. For that matter, is there a list of
support libraries and versions on the wiki somewhere?
Thanks,
On Mon, Sep 16, 2013 at 2:38 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:
> On 9/16/13 2:31 PM, "Brian Reindel" <brian at reindel.com> wrote:
>
>>Thank you for the openssl snippet. The key was output unencrypted, and
>>it is valid. The key/cert are whatever is generated by using keygen.
>
> Given the incorrect permissions involved, the other thing probably worth
> checking is for all the other permissions on directories like
> /var/cache/shibboleth, /var/run/shibboleth, and /var/log/shibboleth
>
> There are brute force chowns in the init script because of the ownership
> change in 2.5, so starting it up with /etc/init.d/shibd is probably an
> advisable thing to try.
>
> -- Scott
>
>
> --
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
More information about the users
mailing list