<div dir="ltr">Thanks Scott,<br><div class="gmail_extra"><br><div class="gmail_quote">On Fri, Nov 6, 2015 at 10:48 PM, Cantor, Scott <span dir="ltr"><<a href="mailto:cantor.2@osu.edu" target="_blank">cantor.2@osu.edu</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex"><span class="">On 11/6/15, 5:36 PM, "users on behalf of Phil Lello" <<a href="mailto:users-bounces@shibboleth.net">users-bounces@shibboleth.net</a> on behalf of <a href="mailto:phil@dunlop-lello.uk">phil@dunlop-lello.uk</a>> wrote:<br>
<br>
>Hi,<br>
><br>
>I'm trying to get persistent nameIds working on my test IdP, but am having trouble when I try to add DB backing.<br>
><br>
>My log shows:<br>
</span><span class="">>2015-11-06 22:26:04,872 - ERROR [org.opensaml.saml.saml2.profile.impl.AddNameIDToSubjects:404] - Profile Action AddNameIDToSubjects: Error while generating NameID<br>
>org.opensaml.saml.common.SAMLException: Invalid NameIdentifierGenerationService configuration<br>
<br>
</span>You elided the error that would actually tell you what didn't work. If you don't like non-failfast behavior, you can change that (services.properties).<span class=""><font color="#888888"><br> 
</font></span><br></blockquote><div>It turns out I was missing commons-{dbcp,pool}2 from my Tomcat environment; I'd mistakenly assumed the example at <a href="https://wiki.shibboleth.net/confluence/display/IDP30/NameIDGenerationConfiguration">https://wiki.shibboleth.net/confluence/display/IDP30/NameIDGenerationConfiguration</a> would work without introducing new dependencies - is it worth adding a note on the sample config there (and on the 3.2.0 child page)?<br><br></div><div>Phil<span class=""><font color="#888888"><a href="mailto:users-unsubscribe@shibboleth.net"></a><br>
</font></span></div></div><br></div></div>