Issue / Bug with Unsolicited SSO after Update from IdP 3.3.1 to 3.4.3

Tom Scavo trscavo at gmail.com
Tue Mar 12 10:36:11 EDT 2019


On Tue, Mar 12, 2019 at 9:11 AM Cantor, Scott <cantor.2 at osu.edu> wrote:
>
> On 3/12/19, 7:02 AM, "users on behalf of Martin Lunze" <users-bounces at shibboleth.net on behalf of martin.lunze at tu-dresden.de> wrote:
>
> > My test-call looks like this:
>
> You can't use curl like that unless you're also handling cookies with it. That isn't new, and has nothing to do with the upgrade. All it will do is redirect into a flow, fail to send back JSESSIONID, and trigger the exact error you got.

Here's a cookbook how to use curl to obtain a SAML2 response from a
Shibboleth IdP. Last time I tried this, four round trips were
required.

https://spaces.at.internet2.edu/x/8QKRAg

HTH,

Tom


More information about the users mailing list