IDP 2.4.1 ECP

Cantor, Scott cantor.2 at osu.edu
Tue May 19 22:47:47 EDT 2015


On 5/20/15, 2:27 AM, "MA Lanxin" <ma at ihep.ac.cn> wrote:



>Hello,
>
>I am trying to get ECP working with IDP 2.4.1 based on SL6.5 and Apache. 
>I need to use LDAP authentication.
>
>I have copied the web.xml file from 
>/$IDP_INSTALL_HOME/shibboleth-identityprovider-2.4.1/src/main/webapp/WEB-I
>NF/web.xml
>to /opt/shibboleth-idp/conf/web.xml, I added the lines to web.xml

That is for use with container authentication in Tomcat. You don't use 
that with Apache authentication.

>I have made “RemoteUser” work successfully.  I added the lines in 
>httpd.conf

If it worked, then why are you adding this to Apache? Pick one. In fact, 
why are you using Apache at all?

>I get an server error.
>Here is the log in apache ssl_error_log
>[Wed May 20 10:00:12 2015] [crit] [client 202.122.32.43] configuration 
>error:  couldn't perform authentication. AuthType not set!: 
>/idp/profile/SAML2/SOAP/ECP

Well, yes, that's incorrect use of Apache. You can't do authentication 
there and not set AuthType.

-- Scott

>


More information about the users mailing list