certificate name was not acceptable

William Griffin-Dubson wrgriffi at coastal.edu
Wed Feb 1 11:07:26 EST 2017


I found the issue. The idp-metadata.xml file on our IDP look different from other ones I have seen. The first 3 certificates in the IDP metadata are all the same and the bottom 3 are different. I imagine this is a mistake made from the person who originally set up our IDP. When I provide the SP with the metadata that we provide to InCommon (containing only the signing cert) it works fine, but when I give the SP the entire idp-metadata.xml file from the IDP, which I did, it gives me the error I received. I have changed the metadata on the SP to the InCommon one and everything is working fine now.

Thanks for helping track down the issue,
Bill
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20170201/01ed75b2/attachment.html>


More information about the users mailing list