Specifying prefixed namespace for SLO requests?

Curtis Lacy clacy at lotame.com
Thu Apr 6 14:58:07 EDT 2017


Thanks for this info.  I’ll follow up with them on what they’re sending.

Curtis

> On Apr 6, 2017, at 2:52 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:
> 
>> Hi, I'm trying to set up a Shibboleth 3.3 IdP, and having trouble processing the
>> logout requests from a particular SP.  Once decrypted, the logout requests
>> look like this:
> 
> That's a decrypted NameID, not the whole request. When you embed namespace usage in encrypted content, it's a basic requirement that you have to ensure the prefix(es) get declared either within the content or in the original message.
> 
>> Is there a bean or property that I need to provide which defines this "saml"
>> prefix?
> 
> No, the message is simply broken, and the SP has a bug. I can't imagine that's Shibboleth but if it is you should certainly file it.
> 
> -- Scott
> 
> -- 
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net


-- 
The information transmitted in this email is intended only for the 
person(s) or entity to which it is addressed and may contain confidential 
and/or privileged material. Any review, retransmission, dissemination or 
other use of, or taking of any action in reliance upon, this information by 
persons or entities other than the intended recipient is prohibited. If you 
received this email in error, please contact the sender and permanently 
delete the email from any computer.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20170406/f53d1d48/attachment.html>


More information about the users mailing list