SAML encryption

Ramkumar Ramsubbu ramkumar.ramsubbu.consultant at nielsen.com
Tue Oct 13 04:45:40 UTC 2020


Hi All,

Thanks, the issue is resolved now. There was a minor mismatch in the Entity
id of IDP metadata  & the Entity id in the idp.properties. Once we
corrected this it worked.

Thanks for all your help.

Thanks,
Ramkumar Ramasubbu
CPS



On Mon, Oct 12, 2020 at 10:56 PM Mak, Steve <makst at upenn.edu> wrote:

> We tried comparing the signing key in the saml response with the IDP
> metadata signing key. It matches and also compared with the signing key
> sent to SP. Both are matching.
>
> Still we get this error.
>
>
>
>
>
> Just to make sure there's no confusion: Can you verify that your IdP has
> two files one is a pub cert and one is a private key.  The pub cert should
> be in the IdP metadata and given to the SP. The IdP uses the private key
> that is not shared, to generate the signature. The SP uses the pub cert to
> validate the signature value.
>
>
>
> Also, you can run an openssl commands to validate that your pub cert is in
> fact paired with your private key.
>
>
>
> - Steve
> --
> For Consortium Member technical support, see
> https://wiki.shibboleth.net/confluence/x/coFAAg
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20201013/ef1da95a/attachment.htm>


More information about the users mailing list