<html>
<head>
<meta http-equiv="content-type" content="text/html; charset=utf-8">
</head>
<body bgcolor="#FFFFFF" text="#000000">
We are working with Portfolium and trying to understand why a
certain configuration is choosing to do SAML 1 over SAML 2.<br>
I have a feeling this is somehow related to how the DS is being
used.<br>
<br>
Both IDP and SP are members of InCommon and seem to be configured
for both SAML 1 and SAML 2.<br>
<blockquote>IDP: entityID=<a class="moz-txt-link-rfc2396E" href="https://idp.calpoly.edu/idp/shibboleth">"https://idp.calpoly.edu/idp/shibboleth"</a><br>
SP: entityID=<a class="moz-txt-link-rfc2396E" href="https://portfolium.com/shibboleth">"https://portfolium.com/shibboleth"</a><br>
</blockquote>
We are redirected to the DS via this URL: <br>
<blockquote><a class="moz-txt-link-freetext" href="https://portfolium.com/sso/login">https://portfolium.com/sso/login</a><br>
</blockquote>
We were also given a WAYFless URL, using the InCommon DS:<br>
<blockquote><tt><a class="moz-txt-link-freetext" href="https://wayf.incommonfederation.org/DS/WAYF?shire=https%3A%2F%2Fportfolium.com%2Fsso%2FSAML%2FPOST&target=https%3A%2F%2Fportfolium.com%2Flogin%2Fsso%3Fnetwork_id%3D6%26from%3D&providerId=https%3A%2F%2Fportfolium.com%2Fshibboleth&action=selection&origin=https%3A%2F%2Fidp.calpoly.edu%2Fidp%2Fshibboleth">https://wayf.incommonfederation.org/DS/WAYF?shire=https%3A%2F%2Fportfolium.com%2Fsso%2FSAML%2FPOST&target=https%3A%2F%2Fportfolium.com%2Flogin%2Fsso%3Fnetwork_id%3D6%26from%3D&providerId=https%3A%2F%2Fportfolium.com%2Fshibboleth&action=selection&origin=https%3A%2F%2Fidp.calpoly.edu%2Fidp%2Fshibboleth</a></tt><tt><br>
</tt></blockquote>
For both of these, the logs on the IDP side show this:<br>
<blockquote><tt>15:34:24.388 - INFO [Shibboleth-Audit:745] -
20150413T223424Z|urn:mace:shibboleth:1.0:profiles:AuthnRequest||<a class="moz-txt-link-freetext" href="https://qa.portfolium.com/shibboleth">https://qa.portfolium.com/shibboleth</a>|urn:mace:shibboleth:2.0:profiles:saml1:sso|<a class="moz-txt-link-freetext" href="https://idp.calpoly.edu/idp/shibboleth">https://idp.calpoly.edu/idp/shibboleth</a>|urn:oasis:names:tc:SAML:1.0:profiles:browser-post|_a54e30175af62cdba887a129911cc8e2|<a class="moz-txt-link-abbreviated" href="mailto:jmustang@calpoly.edu">jmustang@calpoly.edu</a>|urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport||_a34cfe94f32041d57ca38e41a6e8b503|_dab5bc474c8f5e1582aa0f37ae9b92e7,|</tt><tt><br>
</tt><tt>15:34:25.241 - INFO [Shibboleth-Audit:745] -
20150413T223425Z|urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding|_dc37a96fa16e5b54eceb8d7a6179dbe9|<a class="moz-txt-link-freetext" href="https://qa.portfolium.com/shibboleth">https://qa.portfolium.com/shibboleth</a>|urn:mace:shibboleth:2.0:profiles:saml1:query:attribute|<a class="moz-txt-link-freetext" href="https://idp.calpoly.edu/idp/shibboleth">https://idp.calpoly.edu/idp/shibboleth</a>|urn:oasis:names:tc:SAML:1.0:bindings:SOAP-binding|_3c01b095ddab389c31eb1d8d650aeb8e|<a class="moz-txt-link-abbreviated" href="mailto:jmustang@calpoly.edu">jmustang@calpoly.edu</a>||eduPersonAffiliation,sn,transientId,eduPersonPrincipalName,givenName,|_a34cfe94f32041d57ca38e41a6e8b503|_06a9d05a1bc7817eb778baaef017065e,|</tt><tt><br>
</tt></blockquote>
We are looking for any tips or hints.<br>
<br>
Thanks,<br>
Dan<br>
<pre class="moz-signature" cols="999">--
Dan Malone
<a class="moz-txt-link-abbreviated" href="mailto:dmalone@calpoly.edu">dmalone@calpoly.edu</a>
Cal Poly State University - San Luis Obispo
</pre>
</body>
</html>