IdP v3 CAS protocol issues with MSIE 11

Darren Struthers dstruthers at plu.edu
Thu Jul 21 18:22:47 EDT 2016


>
> See https://issues.shibboleth.net/jira/browse/IDP-996 and the
> discussion on the users list referenced there.


Thanks for pointing me at that. However, I suspect this isn't the exact
issue I'm facing, as I do not receive the ServiceNotSpecified error on the
initial load of the login screen. Initially, I get a proper login screen,
and it is only after I supply valid credentials that I am given the error
screen. I should note that if I just attempt to browse directly to the CAS
login screen in any browser I have always received this error. I have been
taking this for expected behavior, though.

Out of curiosity, I did conduct a round of tests, explicitly setting
idp.storage.htmlLocalStorage to true and false in idp.properties. When set
to true, I experience the issue as described in IDP-996, regardless of
which browser I test with. When false, the behavior goes back to what I've
been seeing so far, with problems seemingly limited to IE.

Furthermore, a new issue I'm seeing is an abundance of "Stale Request"
pages coming up after authenticating via SAML 2 in IE, which seemed to work
fine previously. This will happen even when I completely delete browser
cache, cookies, etc., close my browser and start over. Since I don't
believe this was an issue before, I'm wondering if I introduced a new
problem by playing with the htmlLocalStorage options. Is there some other
action I need to take to reset the functionality of this setting beyond
simply updating its value in idp.properties and restarting the IdP? When
the issue occurs, I see variations of this in idp-process.log:

2016-07-21 15:11:41,066 - ERROR
[org.springframework.webflow.execution.repository.FlowExecutionRestorationFailureException:76]
-
org.springframework.webflow.execution.repository.FlowExecutionRestorationFailureException:
A problem occurred restoring the flow execution with key 'e1s1'
at
org.springframework.webflow.execution.repository.impl.DefaultFlowExecutionRepository.getFlowExecution(DefaultFlowExecutionRepository.java:113)
Caused by:
org.springframework.webflow.execution.repository.snapshot.SnapshotNotFoundException:
No flow execution snapshot could be found with id '1'; perhaps the snapshot
has been removed?
at
org.springframework.webflow.execution.repository.impl.SimpleFlowExecutionSnapshotGroup.getSnapshot(SimpleFlowExecutionSnapshotGroup.java:73)

As always, an insight anyone has is much appreciated. Thanks,

Darren


On Thu, Jul 21, 2016 at 12:16 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:

> > > Any info or advice would be helpful.
> >
> > See https://issues.shibboleth.net/jira/browse/IDP-996 and the
> > discussion on the users list referenced there.
>
> I had forgotten that (I scheduled it to make sure we look at it), but it
> seems weird that only IE11 would have local storage on, since most/all
> browsers do now.
>
> -- Scott
>
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>



-- 
Darren M. Struthers
Systems Developer

Information & Technology Services
Pacific Lutheran University
Tacoma, WA 98447
Phone: 253.535.7470
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20160721/06764096/attachment-0001.html>


More information about the users mailing list