sp testshib certificate validation on attribute query

Kevin Foote kevin.foote at colorado.edu
Wed May 31 11:24:43 EDT 2017


Scott and Rod have already pinpointed your issue and indicated what you need to do 
to correct it.

Additionally, not related to your issue, I’ve deleted the multiple copies of metadata you uploaded to 
the system. This was just house keeping.

--------
thanks
 kevin.foote

> On May 31, 2017, at 08:56, aaaa aaaa <si_976 at mail.com> wrote:
> 
> it's https://shibboleth-test.socialnation.it/idp/shibboleth
>  
> Sent: Wednesday, May 31, 2017 at 4:30 PM
> From: "Kevin Foote" <kevin.foote at colorado.edu>
> To: "Shib Users" <users at shibboleth.net>
> Subject: Re: sp testshib certificate validation on attribute query
> Again ..
> What is your entityID?
> 
> --------
> thanks
> kevin.foote
> 
> > On May 31, 2017, at 08:22, aaaa aaaa <si_976 at mail.com> wrote:
> >
> > > 2017-05-31 09:15:54 DEBUG XMLTooling.TrustEngine.ExplicitKey [1582]: no keys within this peer's key information matched the given end-entity certificate
> > > The metadata doesn't have the correct key information
> >
> > Can you give me some hint? In my metadata I have the reference to the certificates generated automatically by shibboleth IdP.
> > Instead in the error message I see it's complaining about the tomcat ssl certificate generated with letsencrypt.
> > --
> > To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
> 
> --
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
> -- 
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net



More information about the users mailing list