shibboleth.SAML2PersistentGenerator question

Peter Schober peter.schober at univie.ac.at
Mon Mar 8 12:20:55 UTC 2021


* Les LaCroix via users <users at shibboleth.net> [2021-03-04 21:43]:
> The underlying problem was something that didn't jump out to me the first
> several times I looked at it.  Our old saml-nameid.properties contained:
> 
> idp.persistentId.salt = “this value has been redacted”
> 
> 
> The new one had the quotes stripped, a mistake in the way I set up the
> Ansible playbooks:
> 
> idp.persistentId.salt = this value has been redacted

Well, you could say that the mistake was adding quote characters at
the begining and end of the value string /originally/ but of course
what broke things now is the salt values not being identical.

-peter


More information about the users mailing list