SP Cert expiration log

Cantor, Scott cantor.2 at osu.edu
Wed Jul 7 20:19:21 UTC 2021


On 7/7/21, 4:14 PM, "users on behalf of vadud3 at gmail.com" <users-bounces at shibboleth.net on behalf of vadud3 at gmail.com> wrote:

>    I am still learning and trying to understand the log.

That's fine, you just didn't include any context, only stated a presumption that happens to be untrue.

> When the certificate expired I saw this in the shibd.log. 
>    2021-07-01 20:23:11 WARN Shibboleth.SSO.SAML2 [35519] [default]: error processing incoming assertion:
> SAML response reported an IdP error.
>
>   So looks like it is not related to certificate expiration as one possible factor.

It means exactly what it says, nothing more. The status code in the SAML response wasn't success. Appropriately configuring the transaction log will include the status code(s) from the message if desired, apart from just tracing it with more log detail.

-- Scott




More information about the users mailing list