How are the SPConfig clockSkew attribute and a Conditions NotBefore related?
Cantor, Scott
cantor.2 at osu.edu
Mon Jun 23 13:26:58 EDT 2014
On 6/23/14, 1:23 PM, "Brian Reindel" <giantjamsandwich at gmail.com> wrote:
>The decrypted assertion has no SessionNotOnOrAfter set. This is the
>AuthnStatement:
I'm at a loss then, but the cause is not clock skew, lack thereof, etc.
Once the session's created, invalidating it is a function of policy. Could
be IP address mismatch I guess. Since the session's invalidating, it's not
a case of not sending the cookie back correctly, so something else is
invalid about the request.
-- Scott
More information about the users
mailing list