LDAP Question

Mark Gibson mgibson at taftcollege.edu
Wed Jul 9 14:11:00 EDT 2014


All,
                I have my system setup and working up to a certain point. When I attempt to login to a site I get the following error "One or more Shibboleth attributes were not passed correctly: eppn, displayName, unscoped-affiliation.  When I look at the log file I see this error

WARN [edu.internet2.middleware.shibboleth.idp.profile.saml2.AbstractSAML2ProfileHandler:555] - Error resolving principal name for SAML request '_9c1a632382541a99b6674e63f6228bb6' from relying party 'https://ci.control.openccc.net/shibboleth'. Cause: Unable to resolve principal, attribute request ID and subject name identifier may not be null

I do have my attribute-filter.xml setup the way that OpenCCC Apply requests. Also I know that I am authenticating against my LDAP Server, which is Active Directory. Somehow I need to tie in the Attributes that they are getting requested to responses from my AD. Any help would be appreciated.

mark
*********************************
Mark Gibson
ITS Network Administrator
29 Cougar Court
Taft CA, 93268
661-763-7737
661-763-7838
*********************************
Si vis pacem, para bellum

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://shibboleth.net/pipermail/users/attachments/20140709/db1d8020/attachment.html 


More information about the users mailing list