IdP v3 not releasing attributes to SAML1 SPs

Cantor, Scott cantor.2 at osu.edu
Mon Aug 22 11:07:51 EDT 2016


> I've had a few more reports today of SPs not working.  The first thing
> I've noticed in the idp-process.log is that these SP are all still using
> SAML1.  It appears that the authentication happens without issue, but I'm
> not seeing any attributes get sent to these SAML1 SPs.

I would imagine you broke the back-channel in some way and queries aren't working.

> Is this something that's know to break in the v2-to-v3 upgrade?

It's entirely identical save for how transient IDs are generated and reversed by default.

-- Scott



More information about the users mailing list