Receiving unable to locate metadata error for testshib sp for IDP siteminderidp.shaku08.edu
Kunal Shah
ks186033 at gmail.com
Wed Jun 20 13:22:53 EDT 2018
Scott,
Thank you so much to show light at the end of the tunnel. So are you
saying we shouldn't have that line ?
<ns2:Assertion xmlns:ns2="urn:oasis:names:tc:SAML:2.0:assertion"
ID="_4e77e5062925b41245ea25d803a117639151"
Id="_4e77e5062925b41245ea25d803a117639151"
or should we have something different? I can take this back to IDP and
ask them to fix it if I know what it should be.
Regards
Kunal
On Wed, Jun 20, 2018 at 10:50 PM Cantor, Scott <cantor.2 at osu.edu> wrote:
>
> On 6/20/18, 1:08 PM, "users on behalf of Kunal Shah" <users-bounces at shibboleth.net on behalf of ks186033 at gmail.com> wrote:
>
> <ns2:Assertion xmlns:ns2="urn:oasis:names:tc:SAML:2.0:assertion"
> ID="_4e77e5062925b41245ea25d803a117639151"
> Id="_4e77e5062925b41245ea25d803a117639151"
>
> See that? That's not valid. That's the attribute it's mentioning. Your IdP is broken.
>
> > Essentially it found SAML assertion and started to process. But there
> > is no error.
>
> You're correct about that as it turns out, there's a code path it's taking that's not getting logged appropriately, I didn't know any of those were left. I'll have to see if I can reproduce it and plug it. But it still logged enough to easily track this down, just not on the right side.
>
> -- Scott
>
>
> --
> For Consortium Member technical support, see https://wiki.shibboleth.net/confluence/x/coFAAg
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
More information about the users
mailing list