<div dir="ltr"><div><div><div>Hi again,<br><blockquote>"Error decoding Shibboleth SSO request" and the profile URL above means they are /not/ using SAML2 like they claimed, but the lagacy "Shibboleth profile" (plus extensions) of SAML1.1,<br>
</blockquote><br></div>I wrote to this SP vendor again and they claim "We are using SAML 2.0 with the HTTP-Redirect protocol. The metadata file indicates the /idp/profile/SAML2/Redirect/SSO as the endpoint."<br>
<br></div>I think they are referring to the location attribute on the <i>SingleSignOnService Binding="urn:oasis:names:tc:SAML:2.0:bindings:HTTP-Redirect" </i>element in my metadata file.<br><br></div>Is there something wrong in my metadata file? Is the SP vendor reading the metadata document incorrectly? Other?<br>
<br>Thanks again for your assistance.<br><br>Ian<br></div>