<html><body><div style="color:#000; background-color:#fff; font-family:HelveticaNeue, Helvetica Neue, Helvetica, Arial, Lucida Grande, Sans-Serif;font-size:12pt"><div>But IDP didn't process the AuthnRequest which could lead to it issuing Assertion.</div><div><br></div><div>What does it mean by "<span style="font-family: 'times new roman', 'new york', times, serif; font-size: 12pt;">SAML message intended destination (required by binding) was not present"? What is not present in the AuthnRequest?</span></div><div><br></div> <div style="font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 12pt;"> <div style="font-family: 'times new roman', 'new york', times, serif; font-size: 12pt;"> <div dir="ltr"> <hr size="1"> <font size="2" face="Arial"> <b><span style="font-weight:bold;">From:</span></b> Peter Schober <peter.schober@univie.ac.at><br> <b><span style="font-weight: bold;">To:</span></b>
users@shibboleth.net <br> <b><span style="font-weight: bold;">Sent:</span></b> Thursday, 20 March 2014 5:46 PM<br> <b><span style="font-weight: bold;">Subject:</span></b> Re: Signed AuthnRequest<br> </font> </div> <div class="y_msg_container"><br>* Vasu Y <<a shape="rect" ymailto="mailto:vyal2k@yahoo.com" href="mailto:vyal2k@yahoo.com">vyal2k@yahoo.com</a>> [2014-03-20 13:04]:<div class="yqt5507531938" id="yqtfd81786"><br clear="none">> My SP is sending a signed AuthnRequest, but at shibboleth IDP end,<br clear="none">> i see errors.<br clear="none">[...]<br clear="none">> Here is the error from idp-process.log:<br clear="none">> -------------------------------------<br clear="none">> 17:26:38.627 - WARN [edu.internet2.middleware.shibboleth.idp.profile.saml2.SSOProfileHandler:406] - Message did not meet security requirements<br clear="none">> org.opensaml.xml.security.SecurityException: SAML message intended
destination (required by binding) was not present<br clear="none">> at org.opensaml.common.binding.decoding.BaseSAMLMessageDecoder.checkEndpointURI(BaseSAMLMessageDecoder.java:201) ~[opensaml-2.6.0.jar:na]<br clear="none">> at org.opensaml.saml2.binding.decoding.BaseSAML2MessageDecoder.decode(BaseSAML2MessageDecoder.java:72) ~[opensaml-2.6.0.jar:na]<br clear="none">> at edu.internet2.middleware.shibboleth.idp.profile.saml2.SSOProfileHandler.decodeRequest(SSOProfileHandler.java:386) [shibboleth-identityprovider-2.4.0.jar:na]<br clear="none">> at edu.internet2.middleware.shibboleth.idp.profile.saml2.SSOProfileHandler.performAuthentication(SSOProfileHandler.java:211) [shibboleth-identityprovider-2.4.0.jar:na]<br clear="none">> at edu.internet2.middleware.shibboleth.idp.profile.saml2.SSOProfileHandler.processRequest(SSOProfileHandler.java:189) [shibboleth-identityprovider-2.4.0.jar:na]<br clear="none">> at
edu.internet2.middleware.shibboleth.idp.profile.saml2.SSOProfileHandler.processRequest(SSOProfileHandler.java:90) [shibboleth-identityprovider-2.4.0.jar:na]</div><br clear="none"><br clear="none">Note that there is no error above (WARN != ERROR).<br clear="none">-peter<br clear="none">--<br clear="none">To unsubscribe from this list send an email to <a shape="rect" ymailto="mailto:users-unsubscribe@shibboleth.net" href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br><br></div> </div> </div> </div></body></html>