off-topic help for Office 365

Paul Hethmon paul.hethmon at clareitysecurity.com
Wed Feb 17 14:21:56 EST 2016


So I found myself needing to set up Office 365 with my Shibboleth IdP. I had done this last fall and got it working but needed to move it to another domain/server.

Without commenting on how clueless MS support is, they are asking me to try a CA signed certificate for the SAML signing certificate (instead of the normal self-signed cert created at installation). So some questions in case someone else has had to bang their head against the O365 wall:

1. If I put in a CA signed certificate as my public key, is there a need to include intermediate certificates? At least as far as my published IdP metadata.
2. MS support keeps wanting to see a Shib log file that is usually in /var/log/shibboleth/shibd.log. Isn’t that the default location for the Shib SP log file?
3. Any troubleshooting tips?

thanks,

Paul


-----
Paul Hethmon
Chief Software Architect
paul.hethmon at clareitysecurity.com




More information about the users mailing list