SessionInitiator handler at duplicate Location (/Login) will not be processed for application (default) - default IDP function not working since SP upgrade from v2 to v3

Cantor, Scott cantor.2 at osu.edu
Tue Mar 12 11:03:10 EDT 2019


On 3/12/19, 10:59 AM, "users on behalf of Nate Klingenstein" <users-bounces at shibboleth.net on behalf of ndk at signet.id> wrote:

> My first hunch would be that you still have an old set of <SessionInitiator> elements located at the /Login location and a
> normal new <SSO> element and the two are conflicting with each other.  You likely don't need the old <SessionInitiator>
> elements and can safely delete them.

That's correct, and this isn't new. The old SP had silent behavior that ignored the duplication, and the new SP warns about it. If it worked before, that's purely accidental as it was always a broken configuration.

-- Scott




More information about the users mailing list