ADFS with shib SP metadata problem

Cantor, Scott cantor.2 at
Mon May 11 09:58:41 EDT 2015

On 5/11/15, 9:52 AM, "Luke Alexander" <luke at> wrote:

>Thanks Scott, I will check with the client what ADFS is trying to do
>(although I won't be surprised if they know, as this is a MS product),
>they are just trying to import a local metadata file - if you did
>manage to view the image I sent in the response to Peter you should be
>able to see that option in the background behind the error.

Yes, I see it. That would be expected to work.

BTW, the xmlsec site you used is telling you the signature is valid, the "failed" part is certificate nonsense.

>That said, it still does seem like ADFS _is_ trying to connect even
>when the metadata file is being imported locally...

Possibly, but I haven't seen it do that.

-- Scott

