<html><body><div style="color:#000; background-color:#fff; font-family:times new roman, new york, times, serif;font-size:12pt"><div style="font-family: 'times new roman', 'new york', times, serif; font-size: 12pt;"><span>Hi Scott,</span></div><div style="font-family: 'times new roman', 'new york', times, serif; font-size: 16px; color: rgb(0, 0, 0); background-color: transparent; font-style: normal;"><span>thanks for the quick reply.</span></div><div style="font-family: 'times new roman', 'new york', times, serif; font-size: 16px; color: rgb(0, 0, 0); background-color: transparent; font-style: normal;"><span>here is some more info.</span></div><div style="font-family: 'times new roman', 'new york', times, serif; font-size: 16px; color: rgb(0, 0, 0); background-color: transparent; font-style: normal;"><span>Initially when i set up shibboleth for the first time i test using University of south California idp.</span></div><div style="font-family: 'times new
roman', 'new york', times, serif; font-size: 16px; color: rgb(0, 0, 0); background-color: transparent; font-style: normal;"><span>Now when im trying to connect to my IDP provider "ABC Company" i used the existing shibboleth2.xml file and modified it accordingly. </span></div><div style="font-family: 'times new roman', 'new york', times, serif; font-size: 16px; color: rgb(0, 0, 0); background-color: transparent; font-style: normal;"><span>Currently when i check i have the below questionable stuff in my shibboleth2.xml</span></div><div style="font-family: 'times new roman', 'new york', times, serif; font-size: 16px; color: rgb(0, 0, 0); background-color: transparent; font-style: normal;"><span><br></span></div><div style="background-color: transparent;"><SessionInitiator type="Chaining" Location="/Login" isDefault="true" id="Intranet"</div><div style="background-color: transparent;">
relayState="cookie" entityID="https://abccompany.org/SAML2/IDP"</div><div style="background-color: transparent;"> acsByIndex="false"></div><div style="background-color: transparent;"> <SessionInitiator type="SAML2" acsIndex="1" template="bindingTemplate.html"/></div><div style="background-color: transparent;"> <SessionInitiator type="Shib1" acsIndex="5"/></div><div style="background-color: transparent;"> </SessionInitiator></div><div style="background-color: transparent;"><br></div><div style="background-color: transparent;"> </div><div style="background-color: transparent;"> <!-- An example using an old-style WAYF, which
means Shib 1 only unless an entityID is provided. --></div><div style="background-color: transparent;"> <SessionInitiator type="Chaining" Location="/WAYF/shibboleth.usc.edu" id="usc" relayState="cookie"></div><div style="background-color: transparent;"> <SessionInitiator type="SAML2" acsIndex="1" template="bindingTemplate.html"/></div><div style="background-color: transparent;"> <SessionInitiator type="Shib1" acsIndex="5"/></div><div style="background-color: transparent;"> <SessionInitiator type="WAYF" acsIndex="5" URL="https://shibboleth-test.usc.edu/idp/profile/Shibboleth/SSO"/></div><div style="background-color: transparent;"><span></span></div><div style="background-color: transparent;">
</SessionInitiator></div><div style="background-color: transparent;"><br></div><div style="background-color: transparent; color: rgb(0, 0, 0); font-size: 16px; font-family: 'times new roman', 'new york', times, serif; font-style: normal;">I know im nbot using University of south California idp any more, can i remove the WAYF Session initiator attribute ?</div><div style="background-color: transparent; color: rgb(0, 0, 0); font-size: 16px; font-family: 'times new roman', 'new york', times, serif; font-style: normal;"><br></div><div style="background-color: transparent; color: rgb(0, 0, 0); font-size: 16px; font-family: 'times new roman', 'new york', times, serif; font-style: normal;">do you think this is the cause</div><div style="background-color: transparent; color: rgb(0, 0, 0); font-size: 16px; font-family: 'times new roman', 'new york', times, serif; font-style: normal;"><br></div><div style="background-color: transparent; color: rgb(0,
0, 0); font-size: 16px; font-family: 'times new roman', 'new york', times, serif; font-style: normal;">thanks</div><div style="background-color: transparent; color: rgb(0, 0, 0); font-size: 16px; font-family: 'times new roman', 'new york', times, serif; font-style: normal;">Justin</div><div style="font-family: 'times new roman', 'new york', times, serif; font-size: 12pt;"><br></div> <div style="font-family: 'times new roman', 'new york', times, serif; font-size: 12pt;"> <div style="font-family: 'times new roman', 'new york', times, serif; font-size: 12pt;"> <div dir="ltr"> <hr size="1"> <font size="2" face="Arial"> <b><span style="font-weight:bold;">From:</span></b> "Cantor, Scott" <cantor.2@osu.edu><br> <b><span style="font-weight: bold;">To:</span></b> Shib Users <users@shibboleth.net> <br> <b><span style="font-weight: bold;">Sent:</span></b> Thursday, June 27, 2013 4:04 PM<br> <b><span style="font-weight: bold;">Subject:</span></b> Re:
Unable to establish security of incoming assertion<br> </font> </div> <div class="y_msg_container"><br>On 6/27/13 3:49 PM, "justin9" <<a ymailto="mailto:justin9@ymail.com" href="mailto:justin9@ymail.com">justin9@ymail.com</a>> wrote:<br><br>>Hi Nate,<br>>The file attached here.<br>>shibd.log <br>><<a href="http://shibboleth.1660669.n2.nabble.com/file/n7587944/shibd.log" target="_blank">http://shibboleth.1660669.n2.nabble.com/file/n7587944/shibd.log</a>><br><br>I would turn up logging to DEBUG to see if anything more comes out, but<br>the sparseness of information leads me to believe the error is something<br>extremely unusual, like a non-Shibboleth IdP that isn't signing anything<br>in the response. It's not normal to get that error without more in the log<br>than that one warning.<br><br>-- Scott<br><br><br>--<br>To unsubscribe from this list send an email to <a ymailto="mailto:users-unsubscribe@shibboleth.net"
href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br><br><br></div> </div> </div> </div></body></html>