Metadata expiry and computing a new expiration time.

Simon Fraser srf at sanger.ac.uk
Sat Sep 12 10:46:14 EDT 2015


On Sat, Sep 12, 2015 at 01:31:19AM +0000, Cantor, Scott wrote:

> On 9/11/15, 11:41 AM, "users on behalf of Simon Fraser"
> <users-bounces at shibboleth.net on behalf of srf at sanger.ac.uk> wrote:
> 
> 
> >The identity provider is 3.1.1.
> 
> There's no point in debugging anything until you're on a supported version.

3.1.1 isn't supported, even though it's only one patchlevel different from the
most recent release? That's harsh. 

> Definitely not in this area. You should make sure, though, that you have
> adequate heap allocated to the JVM.

I'm not seeing any memory errors, and the IDP works fine for sites that are not
part of the Federation.

> >Happy to change it, I wasn't able to get it working with the verification in
> >place.
> 
> Because...?

I'm not sure if this is sarcasm or not. If I knew why it wasn't working, I
would have taken steps to fix it. I don't remember the log messages being
helpful, but I will try again.

As it was, most of the configuration file changes from 2.x to 3.x, combined
with the incomplete or misleading documentation ('deprecated but should still
work' features like the old relying-party and attribute-* files just don't
work, for example), made the transition take weeks, and I ran out of time
before I had to put the upgraded service live.

Simon.



-- 
 The Wellcome Trust Sanger Institute is operated by Genome Research 
 Limited, a charity registered in England with number 1021457 and a 
 company registered in England with number 2742969, whose registered 
 office is 215 Euston Road, London, NW1 2BE. 


More information about the users mailing list