unable to verify message signature with supplied trust engine

Mike Flynn shibbolethlynda at yahoo.com
Fri Jun 5 09:10:18 EDT 2015


OK, no dupe MD - I even put this on a test system where that was the only metadata...  So based on what you are saying is that they assert and the sigs do not match - correct? 


     On Thursday, June 4, 2015 4:49 AM, Mike Flynn <shibbolethlynda at yahoo.com> wrote:
   

 Thanks, Scott.  Will check for dupe MD. 


     On Wednesday, June 3, 2015 2:32 PM, "Cantor, Scott" <cantor.2 at osu.edu> wrote:
   

 On 6/3/15, 7:23 PM, "Mike Flynn" <shibbolethlynda at yahoo.com> wrote:



>So the certs match and the cert is valid (checked it with the SSLShopper 
>tool).  What am I missing here?

There is no such thing as validity here, they simply didn't sign with that 
key, or probably more likely there's a duplicate piece of metadata 
somewhere that has a different one.

-- Scott

-- 
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net


   

  
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20150605/58428879/attachment-0001.html>


More information about the users mailing list