Message was signed, but signature could not be verified.

Cantor, Scott cantor.2 at osu.edu
Wed Aug 13 19:55:38 EDT 2014


On 8/13/14, 7:46 PM, "Farzan Qureshi" <fqureshi at rosmini.school.nz> wrote:

>But when I access
>https://idp.rosmini.school.nz/Shibboleth.sso/Metadata  I get the meta
>data file which means that both services are working independently isn't
>it?

Probably, but you can't assign them the same entityID, not without knowing
much more about metadata than you understand at this point.

I can tell from the Issuer element that you did this. So don't do that.

>Can you please guide me what should I do? Any guidelines would be much
>appreciated.

Change the SP's entityID to something different from the IdP's entityID.
Your mistake is that they match, and so the IdP's own metadata is being
loaded into the IdP by default and it's hiding/masking the SP's metadata.

This is not entirely your fault; the IdP has no reason to be loading it's
own metadata, but that's a design flaw that isn't going to be corrected
until the next version.

-- Scott



More information about the users mailing list