<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=us-ascii">
<meta name="Generator" content="Microsoft Exchange Server">
<!-- converted from rtf -->
<style><!-- .EmailQuote { margin-left: 1pt; padding-left: 4pt; border-left: #800000 2px solid; } --></style>
</head>
<body>
<font face="Calibri" size="2"><span style="font-size:11pt;">
<div>I got the 500 error corrected (tc config) and now I get this situation on our (2.4) idp:</div>
<div> </div>
<div>I browse a URL to a docusign document which properly goes to my idp and authenticates and I get the doc. Then from the same tab I go to the URL for a different docusign doc. The docsusign SP sends me back to my idp with a new Authnrequest, which returns
an empty response.</div>
<div> </div>
<div>My idp-process.log includes: this after the authnrequest</div>
<div style="padding-left:36pt;">12:42:10.116 - DEBUG [edu.internet2.middleware.shibboleth.idp.profile.saml2.SSOProfileHandler:226] - Creating login context and transferring control to authentication engine</div>
<div style="padding-left:36pt;">12:42:10.122 - DEBUG [edu.internet2.middleware.shibboleth.idp.util.HttpServletHelper:181] - Storing LoginContext to StorageService partition loginContexts, key XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXbf33ac4eea5f3331</div>
<div style="padding-left:36pt;">12:42:10.143 - DEBUG [edu.internet2.middleware.shibboleth.idp.profile.saml2.SSOProfileHandler:240] - Redirecting user to authentication engine at
<a href="https://webapp.bgsu.edu:443/idp/AuthnEngine">https://webapp.bgsu.edu:443/idp/AuthnEngine</a></div>
<div style="padding-left:36pt;">12:42:10.214 - TRACE [edu.internet2.middleware.shibboleth.idp.session.IdPSessionFilter:117] - Attempting to retrieve IdP session cookie.</div>
<div style="padding-left:36pt;">12:42:10.215 - TRACE [edu.internet2.middleware.shibboleth.idp.session.IdPSessionFilter:123] - Found IdP session cookie.</div>
<div style="padding-left:36pt;">12:42:10.216 - TRACE [edu.internet2.middleware.shibboleth.idp.session.IdPSessionFilter:81] - Updating IdP session activity time and adding session object to the request</div>
<div style="padding-left:36pt;">12:42:10.220 - TRACE [edu.internet2.middleware.shibboleth.idp.util.HttpServletHelper:349] - Looking up LoginContext with key XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXbf33ac4eea5f3331 from StorageService parition: loginContexts</div>
<div style="padding-left:36pt;">12:42:10.221 - TRACE [edu.internet2.middleware.shibboleth.idp.util.HttpServletHelper:355] - Retrieved LoginContext with key XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXbf33ac4eea5f3331 from StorageService parition: loginContexts</div>
<div style="padding-left:36pt;">12:42:10.318 - DEBUG [edu.internet2.middleware.shibboleth.idp.util.HttpServletHelper:588] - Unbinding LoginContext</div>
<div style="padding-left:36pt;">12:42:10.318 - DEBUG [edu.internet2.middleware.shibboleth.idp.util.HttpServletHelper:614] - Expiring LoginContext cookie</div>
<div style="padding-left:36pt;">12:42:10.322 - DEBUG [edu.internet2.middleware.shibboleth.idp.util.HttpServletHelper:625] - Removed LoginContext, with key XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXbf33ac4eea5f3331, from StorageService partition loginContexts</div>
<div style="padding-left:36pt;">12:42:10.325 - DEBUG [edu.internet2.middleware.shibboleth.idp.profile.saml2.SSOProfileHandler:178] - Incoming request contains a login context and indicates there was an error authenticating the principal, processing second leg
of request</div>
<div> </div>
<div>Any suggestions what is causing it to fail there? </div>
<div> </div>
<div>BTW - our idp(s) redirect to CAS for each authn</div>
<div> </div>
<div>Thanks.</div>
<div> </div>
<div>Ted F. Fisher</div>
<div>-----Original Message-----<br>
</div>
<div>> INFO: com.tc.exception.TCNonPortableObjectError:</div>
<div>> Attempt to set the field of a shared object to an instance of a </div>
<div>> non-portable class. This</div>
<div>> unshareable class has not been included for sharing in the configuration.</div>
<div> </div>
<div>I don't know Terracotta, so I'm afraid there's nothing I can diagnose on that. Maybe others who used it might have an insight.</div>
<div> </div>
<div>-- Scott</div>
<div> </div>
<div>--</div>
<div>To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a></div>
<div> </div>
</span></font>
</body>
</html>