Debugging Logout requests on SP.

Cantor, Scott cantor.2 at osu.edu
Wed Jan 29 20:08:15 EST 2014


On 1/29/14, 7:05 PM, "Friedrich Clausen" <fred at derf.nl> wrote:
>
>However the AD FS side still complains (generic message, I don't have
>access to the logs) and I'd like to see the actual SAML logout messages
>sent but, from the NativeSPLogging [2] page, it is not clear to me how to
>accomplish this. I have tried adding
> the following to shibd.logger

Do not modify transaction log levels. That has nothing to do with shibd
logging or debugging, that's the audit log.

Look at shibd.logger:

# tracing of SAML messages and security policies
#log4j.category.OpenSAML.MessageDecoder=DEBUG
#log4j.category.OpenSAML.MessageEncoder=DEBUG


-- Scott




More information about the users mailing list