Shibboleth SP configuration for IDP initiated SSO
Sreeni Janapati
srinij77 at hotmail.com
Tue Aug 25 22:41:55 EDT 2015
Hi,
I have done the SP initiated sso successfully with Shibboleth SP(2.5.3) previously with my clients.
Currently, one of my clients wants to do the IDP initiated SSO. Here are the following info provided by the client.
1. SAML2 response xml file.
2. public key cert.
Client mentioned that this is all they provide. They don't
exchange metadata file. Even I provided my metadata file, but they have
not used.
Here is the configuration change I did in the SP Shibboleth shiboleth2.xml.
<Host name="www.spserver.com">
<Path name="user" authType="shibboleth" requireSession="false"/>
</Host>
I build the metadata file based on the SAML2 response file provided by the client.
After the above changes,
When IDP is trying to post the data, then there was an error in the
log file "XMLTooling.TrustEngine.PKIX [1]: certificate name was not
acceptable"
Am I doing the right configuration?
If not, is there any other way of doing the configuration to achieve IDP initiated SSO?
I am struggling to do the configuration for couple of weeks. Any help is appreciated.
Thanks
srini
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20150825/9af90c86/attachment.html>
More information about the users
mailing list