SP shibsession looping
Cantor, Scott
cantor.2 at osu.edu
Tue Aug 19 10:01:57 EDT 2014
On 8/19/14, 12:44 AM, "savitha sagar" <savithaksagar at gmail.com> wrote:
>
>looking for help in resolving this problem.... It is one of our urgent
>requirement and I am stuck-up here ... Your suggestion /help is highly
>appreciated .
How many of the specific suggestions in the hundreds of threads about this
topic in the archive have you tried? If you haven't read all of the
introductory materal on how the system operates, and then traced the
activity with a browser plugin to follow the cookies and see where things
fall down, then I suggest you start with that.
>We have configured Shibboleth service provider on win 2008 -IIS7 in our
>organization and it will be interacting with an external IDP belongs
>other organization (not shibboleth it is openId )that supports SAML
>2.0(Microsoft product) .
We don't support OpenID at this time. So either you're confused, or you
have a serious disconnect in what you're attempting.
>When we browse the shib secured application URL( application which is
>configured in shib-SP configuration file), it is redirecting to other
>organization IDP login page for authorization.Once authentication
>details provided, the SSO control is returning back to locally configured
>SP but instead redirecting to our shib secured application page
>(requested page) the request is looping and refreshing SAML request with
>different "relay state " value highlighted as below.
You can read up on the looping issue in the archive or the wiki [1].
Nobody can diagnose a looping issue but you, or somebody else with the
ability to access the SP and login to the IdP. We can speculate, but
nothing more.
-- Scott
[1] https://wiki.shibboleth.net/confluence/display/SHIB2/NativeSPLooping
More information about the users
mailing list