CAS with shib 3

Pablo Vidaurri psvidaurri at
Fri Jul 20 17:08:51 EDT 2018

I am trying to do SSO using CAS and having shib 3 as SAML provider. I have
setup the cas plugin as outlined in

When testing, I am being redirected to my CAS sso login page. I am seeing a
successful login and tickets being generated on the CAS side. But when I
get sent back to shib I am getting an error::

opensaml::FatalProfileException at (

SAML response reported an IdP error.

Error from identity provider:

*Status:* urn:oasis:names:tc:SAML:2.0:status:Requester
*Sub-Status:* urn:oasis:names:tc:SAML:2.0:status:AuthnFailed
*Message:* An error occurred


Am I missing anything in the config?
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <>

More information about the users mailing list