SP- Redirect to improper urls after setting value for redirectErrors
Alexander Ivanov
alex at calmforce.com
Mon Jan 23 23:07:40 EST 2017
Thanks Scott.
Indeed, the problem was with that Javascript. That sample code from the
wiki documentation does not work properly if the cookie file is not
terminated with a semicolon, and this was the case in Firefox after the
"_check_is_passive" cookie value was set.
It just seemed like a huge coincidence that our Drupal site was having a
very similar error, considering that it has a completely different
implementation for the isPassive login (provided by shib_auth contrib
module). The Drupal implementation must be buggy as well. The SP is not
to blame.
On Mon, Jan 23, 2017 at 8:03 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:
> On 1/23/17, 6:44 PM, "users on behalf of Alexander Ivanov" <
> users-bounces at shibboleth.net on behalf of alex at calmforce.com> wrote:
>
> > Our Dataverse instance is using the sample code from your Shibboleth
> isPassive documentation page for the isPassive
> > implementation:
> > https://wiki.shibboleth.net/confluence/display/SHIB2/isPassive
>
> That is not my page, that's user contributed documentation. I have no idea
> what it does, but just a simple glance at it shows that it's doing things
> with cookies so if you're looking for a smoking gun, that looks pretty
> likely to me.
>
> The SP just does what it's documented to do and what happens after it
> redirects where you send it is entirely out of its hands.
>
> -- Scott
>
>
>
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20170123/a504d0e7/attachment.html>
More information about the users
mailing list