<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=us-ascii">
</head>
<body style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space;">
On Apr 11, 2014, at 8:31 AM, Paul Hethmon <<a href="mailto:paul.hethmon@clareitysecurity.com">paul.hethmon@clareitysecurity.com</a>> wrote:<br>
<div><br class="Apple-interchange-newline">
<blockquote type="cite">
<div style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space;">
<div>
<blockquote type="cite" style="font-family: Helvetica; font-size: 14px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;">
My test Shib 2.4 IdP with MCB works fine with all our modern SAML2 SPs, but 3 vendors apparently hard-coded to /profile/Shibboleth/SSO don't. Is this by design? Any workaround? Yes I will try to get the SPs (Symplicity and PeopleAdmin) fixed.
<div><br>
</div>
<div>
<div style="font-family: arial, helvetica, sans-serif; font-size: 16px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;">
Apr 10, 2014 10:43:02 PM org.apache.catalina.core.StandardWrapperValve invoke</div>
<div style="font-family: arial, helvetica, sans-serif; font-size: 16px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;">
SEVERE: Servlet.service() for servlet AuthenticationEngine threw exception</div>
<div style="font-family: arial, helvetica, sans-serif; font-size: 16px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;">
java.lang.ClassCastException: edu.internet2.middleware.shibboleth.idp.authn.ShibbolethSSOLoginContext cannot be cast to edu.internet2.middleware.shibboleth.idp.authn.Saml2LoginContext</div>
<div style="font-family: arial, helvetica, sans-serif; font-size: 16px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;">
at edu.internet2.middleware.assurance.mcb.authn.provider.MCBLoginHandler.login(MCBLoginHandler.java:98)</div>
<br class="Apple-interchange-newline">
</div>
</blockquote>
</div>
<div><br>
</div>
<div>So they are using SAML1?</div>
</div>
<br class="Apple-interchange-newline">
</blockquote>
<br>
</div>
<div>Ok, I just committed 1.1.3 which uses the base LoginContext instead of the SAML2LoginContext. I believe this should fix the problem.</div>
<div><br>
</div>
<div>Paul</div>
<div><br>
</div>
<br>
<div apple-content-edited="true">Paul Hethmon<br>
Chief Software Architect<br>
<a href="mailto:paul.hethmon@clareitysecurity.com">paul.hethmon@clareitysecurity.com</a><br>
<br>
</div>
<br>
</body>
</html>