TestShib.org - Testing my SP - Unable to encrypt assertion

Kevin Foote kpfoote at uoregon.edu
Thu Mar 12 13:30:33 EDT 2015




> On Mar 12, 2015, at 10:09 AM, Kevin Foote <kpfoote at uoregon.edu> wrote:
> 
> 
>> On Mar 12, 2015, at 10:06 AM, Dip Sarkar <dip.sarkar at agiloft.com> wrote:
>> 
>> Hi,
>>    I have implemented a SAML v2 Service Provider, I am testing it out  with IdP @TestShib.org.
>> I get the following SAML Assertion after I login with suggested user/password at TestShib.org , Since the NameId is not sent in the assertion, I cannot verify my SAML v2 implementation completely.
>> 
>> ..... <saml2p:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Responder"/><saml2p:StatusMessage>Unable to encrypt assertion</saml2p:StatusMessage></saml2p:Status></saml2p:Response>
>> 
>> Please suggest if I missed any config / anything needs to be configured at TestShib.org.
> 
> Nope. And I’ll take a look see :-) 

So I believe you need to use and entityId that is specific to your host. 
IE. your MD file needs to be unique 


--------
thanks
 kevin.foote


More information about the users mailing list