random issues with idp 3.4.1

Paul B. Henson henson at cpp.edu
Tue Dec 4 20:33:16 EST 2018

> So I'm testing my idp 3.4.1 upgrade and running into random failures on some
> services; well, not random in the sense that it occasionally fails, but random
> in the sense that a number fail and a number seem to be fine. For example,

Ah hah, I believe I tracked it down to enabling the following new setting:

idp.encryption.config = shibboleth.EncryptionConfiguration.GCM

After I commented this out all of the ones that were failing started working again. Evidently what they all had in common is presumably not supporting this newer encryption algorithm 8-/. Perhaps the config file should have a warning that enabling it will potentially cause a lot of breakage :).

Sorry for the noise...

