<div dir="ltr">I've noticed a strange problem when trying to use my InCommon credentials to login to the Educause site. This happened when I was trying to test the various SP sites that my IdP serves as part of our V3 upgrade process. I'll choose the option for InCommon login and select my University. I immediately get a 404 Not Found error. On the error page, it seems to have the icon for Ping Identity. A SAML trace of this shows that on the POST command to <b><a href="https://sso.educause.edu/idp/profile/SAML2/POST/SSO">https://sso.educause.edu/idp/profile/SAML2/POST/SSO</a> </b>I get the following message:<div><br></div><div><pre id="txt"><b>POST <a href="https://sso.educause.edu/idp/profile/SAML2/POST/SSO">https://sso.educause.edu/idp/profile/SAML2/POST/SSO</a> HTTP/1.1
</b><b>Host</b>: <a href="http://sso.educause.edu">sso.educause.edu</a>
<b>User-Agent</b>: Mozilla/5.0 (Windows NT 10.0; WOW64; rv:44.0) Gecko/20100101 Firefox/44.0
<b>Accept</b>: text/html,application/xhtml+xml,application/xml;q=0.9,*/*;q=0.8
<b>Accept-Language</b>: en-US,en;q=0.5
<b>Accept-Encoding</b>: gzip, deflate, br
<b>Referer</b>: <a href="https://sso.educause.edu">https://sso.educause.edu</a>
<b>Cookie</b>: SESS11c82da70b97151cc5783fcd426abe31=vh1vrbaeb98bqfk0r9hqosgdk1; PF=pyUbt4P8Np4sO4otTKvtLn
<b>Content-Type</b>: application/x-www-form-urlencoded
<b>Content-Length</b>: 492
<b>HTTP/?.? 404 Not Found
</b><b>Date</b>: Mon, 14 Mar 2016 21:14:32 GMT
<b>content-security-policy</b>: referrer origin
<b>X-Frame-Options</b>: SAMEORIGIN
<b>Pragma</b>: no-cache
<b>Content-Type</b>: text/html; charset=UTF-8
<b>Cache-Control</b>: must-revalidate,no-cache,no-store
<b>Content-Length</b>: 1323</pre><pre id="txt"><br></pre><pre id="txt"><font face="arial, helvetica, sans-serif">And the SAML packet:</font></pre><pre id="txt"><samlp:AuthnRequest Version="2.0"
ID="_s2dqjGWhd0_BZ3SfGxjNxeBj4B"
IssueInstant="2016-03-14T21:14:31.758Z"
xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol"
>
<saml:Issuer xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"><a href="https://sso.educause.edu/sp">https://sso.educause.edu/sp</a></saml:Issuer>
<samlp:NameIDPolicy AllowCreate="true" />
</samlp:AuthnRequest></pre><pre id="txt"><br></pre><pre id="txt"><font face="arial, helvetica, sans-serif">In terms of the IdP, there are absolutely no mentions in idp-process.log (using logging level of debug) of a connection to educause at all.</font></pre><pre id="txt"><font face="arial, helvetica, sans-serif">Strangely, this same behavior seems to be happening when I switch back to our V2 IdP. I was able to connect using both versions of the IdP.</font></pre><pre id="txt"><span style="font-family:arial,helvetica,sans-serif">Any suggestions on what this might be and how to troubleshoot the problem?</span></pre><pre id="txt"><span style="font-family:arial,helvetica,sans-serif"><br></span></pre><pre id="txt"><span style="font-family:arial,helvetica,sans-serif">Thanks,</span></pre><pre id="txt"><span style="font-family:arial,helvetica,sans-serif">Mike </span><br></pre><pre id="txt"><font face="arial, helvetica, sans-serif"><br></font></pre></div></div>