<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<style type="text/css" style="display:none;"><!-- P {margin-top:0;margin-bottom:0;} --></style>
</head>
<body dir="ltr">
<div id="divtagdefaultwrapper" style="font-size:12pt;color:#000000;background-color:#FFFFFF;font-family:Calibri,Arial,Helvetica,sans-serif;">
<p>Hi All,</p>
<p><br>
</p>
<p>I reconfigured Apache to redirect HTTP to HTTPS and changed the endpoint to point to the HTTPS link. It seems to work now. Thanks!</p>
<p><br>
</p>
<p>Cheers,</p>
<p> David Newswanger<br>
</p>
<br>
<br>
<div style="color: rgb(0, 0, 0);">
<hr tabindex="-1" style="display:inline-block; width:98%">
<div id="divRplyFwdMsg" dir="ltr"><font style="font-size:11pt" face="Calibri, sans-serif" color="#000000"><b>From:</b> users <users-bounces@shibboleth.net> on behalf of David E. Newswanger <David_Newswanger@berea.edu><br>
<b>Sent:</b> Monday, December 21, 2015 12:29 PM<br>
<b>To:</b> users@shibboleth.net<br>
<b>Subject:</b> IDP Sending Users to Unsecure HTTP Connection</font>
<div> </div>
</div>
<div>
<div id="divtagdefaultwrapper" style="font-size:12pt; color:#000000; background-color:#FFFFFF; font-family:Calibri,Arial,Helvetica,sans-serif">
<p>I recently installed a new service provider. When people go to login via HTTPS, the identity provider authenticates them and then redirects them using HTTP to the home page and they get a security warning saying "The information you have entered on this
page will be sent over an insecure connection and could be read by a third party." How do I configure my SP or IdP to redirect authenticated users using HTTPS?</p>
<p><br>
</p>
<p>Thanks,</p>
<p> David Newswanger. <br>
</p>
</div>
</div>
</div>
</div>
</body>
</html>