<div dir="ltr"><div><br></div><div class="gmail_extra"><br><div class="gmail_quote">On Fri, Mar 18, 2016 at 9:55 AM, Cantor, Scott <span dir="ltr"><<a href="mailto:cantor.2@osu.edu" target="_blank">cantor.2@osu.edu</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left-width:1px;border-left-color:rgb(204,204,204);border-left-style:solid;padding-left:1ex">On 3/17/16, 9:52 PM, "users on behalf of joller lee" <<a href="mailto:users-bounces@shibboleth.net">users-bounces@shibboleth.net</a> on behalf of <a href="mailto:joller.lee@gmail.com">joller.lee@gmail.com</a>> wrote:<br><br>
<br>
If it's not Shibboleth, then I still think it's got a bug, but I'd be focused on what the message looks like, not what the SP's doing. It's not finding an EncryptedKey element to chew on.</blockquote><div><br></div>For the log messages, the SAML message looks identical in terms of the XML structure.<div>They only differ on some values such as ID's, CipherValue's, Recipient, SignatureValue, etc.</div><div><br></div><div>Do you mean the SP tries to find the key from inside the SAML message but fails? </div></div></div></div>