Password Authorization problem.
Mark Nesterovych
m.nesterovych at gmail.com
Wed Dec 7 04:40:40 EST 2016
Hello.
Looks like at the moment my IDP is trying to authorize in REMOTE HTTP USER
way.
How it could be changed to Password auth with own login page ?
Thanks in advance.
Configuration changes made on IDP taken from
https://wiki.shibboleth.net/confluence/display/IDP30/Google+Apps+for+Education
My goal is to authorize users on Google Apps via own ldap server.
2016-12-07 09:36:41,276 - DEBUG
[net.shibboleth.idp.saml.profile.impl.InitializeAuthenticationContext:115]
- Profile Action InitializeAuthenticationContext: Created authentication
context: AuthenticationContext{initiationInstant=2016-12-07T09:36:41.276Z,
isPassive=false, forceAuthn=false, hintedName=null, potentialFlows=[],
activeResults=[], attemptedFlow=null, signaledFlowId=null,
authenticationStateMap={}, resultCacheable=true,
initialAuthenticationResult=null, authenticationResult=null,
completionInstant=1970-01-01T00:00:00.000Z}
2016-12-07 09:36:41,291 - DEBUG
[net.shibboleth.idp.authn.impl.InitializeRequestedPrincipalContext:111] -
Profile Action InitializeRequestedPrincipalContext: Profile configuration
does not include any default authentication methods
2016-12-07 09:36:41,295 - DEBUG
[net.shibboleth.idp.saml.saml2.profile.impl.ProcessRequestedAuthnContext:146]
- Profile Action ProcessRequestedAuthnContext: AuthnRequest did not contain
a RequestedAuthnContext, nothing to do
2016-12-07 09:36:41,491 - DEBUG
[net.shibboleth.idp.authn.impl.PopulateAuthenticationContext:126] - Profile
Action PopulateAuthenticationContext: Installing custom
PrincipalEvalPredicateFactoryRegistry into AuthenticationContext
2016-12-07 09:36:41,492 - DEBUG
[net.shibboleth.idp.authn.impl.PopulateAuthenticationContext:167] - Profile
Action PopulateAuthenticationContext: Installed 1 authentication flows into
AuthenticationContext
2016-12-07 09:36:41,498 - DEBUG
[net.shibboleth.idp.session.impl.PopulateSessionContext:131] - Profile
Action PopulateSessionContext: No session found for client
2016-12-07 09:36:41,502 - DEBUG
[net.shibboleth.idp.authn.impl.FilterFlowsByForcedAuthn:53] - Profile
Action FilterFlowsByForcedAuthn: Request does not have forced
authentication requirement, nothing to do
2016-12-07 09:36:41,505 - DEBUG
[net.shibboleth.idp.authn.impl.FilterFlowsByPassivity:53] - Profile Action
FilterFlowsByPassivity: Request does not have passive requirement, nothing
to do
2016-12-07 09:36:41,507 - DEBUG
[net.shibboleth.idp.authn.impl.FilterFlowsByNonBrowserSupport:53] - Profile
Action FilterFlowsByNonBrowserSupport: Request does not have non-browser
requirement, nothing to do
2016-12-07 09:36:41,511 - DEBUG
[net.shibboleth.idp.authn.impl.SelectAuthenticationFlow:257] - Profile
Action SelectAuthenticationFlow: No specific Principals requested
2016-12-07 09:36:41,512 - DEBUG
[net.shibboleth.idp.authn.impl.SelectAuthenticationFlow:292] - Profile
Action SelectAuthenticationFlow: No usable active results available,
selecting an inactive flow
2016-12-07 09:36:41,512 - DEBUG
[net.shibboleth.idp.authn.impl.SelectAuthenticationFlow:334] - Profile
Action SelectAuthenticationFlow: Selecting inactive authentication flow
authn/Password
2016-12-07 09:36:42,176 - DEBUG
[net.shibboleth.idp.authn.impl.ExtractUsernamePasswordFromBasicAuth:115] -
Profile Action ExtractUsernamePasswordFromBasicAuth: No appropriate
Authorization header found
--
Best regards,
Mark Nesterovych
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20161207/fd792b49/attachment.html>
More information about the users
mailing list