TestShib metadata not updating
Kevin Foote
kpfoote at uoregon.edu
Thu Jan 22 11:31:19 EST 2015
> On Jan 22, 2015, at 7:31 AM, Kevin Foote <kpfoote at uoregon.edu> wrote:
>
>
>> On Jan 22, 2015, at 7:12 AM, Benjamin Cherian <benjamin.cherian at villanova.edu> wrote:
>>
>> Yea I used the same exact file name each time. Spelling, case, everything the same. I last tried uploading it yesterday after 5pm. I thought if I tried this morning it would have cleared out by now.
>
> Good keep using the same file name then :)
> Metadata retention is ~30 days if I recall.
>
> It looks like your HTTPD server is not virtualized properly. The IdP is trying to return to an ACS endpoint that is not registered with that metadata. Look at the http vs https in the URL.
Ben,
Your current md file looks ok to me as long as you have the HTTPD server configured properly.
(Disregard most of my other replies - probably shouldn’t reply to stuff on the bus :)
I don’t have access to your end but it looks like the SP is doing what you told it to via your metadata entry.
<samlp:AuthnRequest xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" AssertionConsumerServiceURL="https://sp.testshib.org/Shibboleth.sso/SAML2/POST" Destination="https://<YOURDOMAIN>/idp/profile/SAML2/Redirect/SSO" ID="_d7c06089260595a3c8bf64c414e361b9" IssueInstant="2015-01-22T16:25:52Z" ProtocolBinding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST" Version="2.0"><saml:Issuer xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">https://sp.testshib.org/shibboleth-sp</saml:Issuer><samlp:NameIDPolicy AllowCreate="1"/></samlp:AuthnRequest>
2015-01-22 11:25:52 DEBUG OpenSAML.MessageEncoder.SAML2Redirect [6]: message encoded, sending redirect to client
--------
thanks
kevin.foote
More information about the users
mailing list