invalid metadata file

Steve Nolen technolengy at gmail.com
Tue Feb 9 15:43:28 EST 2016


Ah! So I've been trying to configure keycloak as an SP instead of an IdP.
Is this a bad idea? It seems to support both.  This is the metadata from SP
descriptor endpoint.

On Tue, Feb 9, 2016 at 12:42 PM John Dennis <jdennis at redhat.com> wrote:

> On 02/09/2016 03:38 PM, Liam Hoekenga wrote:
> >
> > On Tue, Feb 9, 2016 at 3:29 PM, Steve Nolen <technolengy at gmail.com
> > <mailto:technolengy at gmail.com>> wrote:
> >
> >     I'm receiving the error message: "The file you are attempting to
> >     upload is not valid metadata. Please correct any errors and try
> >     again." (Perhaps this error message could be appended to provide a
> >     bit more verbosity on what seems to be the issue, given that is
> >     possible!)
> >
> >     Here is my metadata:
> >     https://gist.github.com/stevenolen/0c1ce3afdc3e6815146b
> >
> >
> > Hi Steve -
> >
> > The URL you provided displays your metadata while embedded in the github
> > UI - which would explain why things retrieving metadata at the URL would
> > say it's invalid.
> >
> > What happens if you point to the "raw" version of that file?
> >
> https://gist.githubusercontent.com/stevenolen/0c1ce3afdc3e6815146b/raw/8a01ed285bcce15502847a2252867f6f75e14799/keycloak-test.xml
>
> Aside from that, this is not a standard Keycloak idp metadata file,
> where is your SingleSignonService? You've only got SingleLogoutService
> declared. Pretty hard to logout if you can't login :-)
>
>
> --
> John
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20160209/687ddd5e/attachment.html>


More information about the users mailing list