<div dir="ltr">This is what I got from debug<br><br>2016-05-25 13:23:50,462 - DEBUG [net.shibboleth.idp.profile.impl.SelectRelyingPartyConfiguration:136] - Profile Action SelectRelyingPartyConfiguration: Found relying party configuration shibboleth.DefaultRelyingParty for request<br>2016-05-25 13:23:50,492 - DEBUG [net.shibboleth.idp.profile.interceptor.impl.PopulateProfileInterceptorContext:126] - Profile Action PopulateProfileInterceptorContext: Installing flow intercept/security-policy/saml2-sso into interceptor context<br>2016-05-25 13:23:50,532 - WARN [net.shibboleth.idp.profile.logic.AbstractAttributePredicate:88] - No AttributeContext located for evaluation<br>2016-05-25 13:23:50,536 - DEBUG [net.shibboleth.idp.saml.profile.impl.InitializeOutboundMessageContext:149] - Profile Action InitializeOutboundMessageContext: Initialized outbound message context<br>2016-05-25 13:23:50,543 - DEBUG [net.shibboleth.idp.saml.profile.impl.PopulateBindingAndEndpointContexts:369] - Profile Action PopulateBindingAndEndpointContexts: Attempting to resolve endpoint of type {urn:oasis:names:tc:SAML:2.0:metadata}AssertionConsumerService for outbound message<br>2016-05-25 13:23:50,545 - DEBUG [net.shibboleth.idp.saml.profile.impl.PopulateBindingAndEndpointContexts:507] - Profile Action PopulateBindingAndEndpointContexts: Populating template endpoint for resolution from SAML AuthnRequest<br>2016-05-25 13:23:50,546 - DEBUG [org.opensaml.saml.common.binding.AbstractEndpointResolver:220] - Endpoint Resolver org.opensaml.saml.common.binding.impl.DefaultEndpointResolver: Returning 1 candidate endpoints of type {urn:oasis:names:tc:SAML:2.0:metadata}AssertionConsumerService<br>2016-05-25 13:23:50,546 - DEBUG [org.opensaml.saml.common.binding.impl.DefaultEndpointResolver:126] - Endpoint Resolver org.opensaml.saml.common.binding.impl.DefaultEndpointResolver: Neither candidate endpoint location '<a href="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=-10680">https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=-10680</a>' nor response location 'null' matched '<a href="https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=-10680&gid=1">https://securelb.imodules.com/controls/login/AssertionConsumerService.aspx?sid=-10680&gid=1</a>' <br>2016-05-25 13:23:50,546 - DEBUG [org.opensaml.saml.common.binding.AbstractEndpointResolver:130] - Endpoint Resolver org.opensaml.saml.common.binding.impl.DefaultEndpointResolver: No candidate endpoints met criteria<br>2016-05-25 13:23:50,546 - WARN [net.shibboleth.idp.saml.profile.impl.PopulateBindingAndEndpointContexts:404] - Profile Action PopulateBindingAndEndpointContexts: Unable to resolve outbound message endpoint<br>2016-05-25 13:23:50,550 - WARN [org.opensaml.profile.action.impl.LogEvent:76] - An error event occurred while processing the request: EndpointResolutionFailed<br>2016-05-25 13:23:50,551 - DEBUG [org.opensaml.saml.common.profile.logic.DefaultLocalErrorPredicate:154] - No SAMLBindingContext or binding URI available, error must be handled locally<br></div><div class="gmail_extra"><br><div class="gmail_quote">On Wed, May 25, 2016 at 1:13 PM, Cantor, Scott <span dir="ltr"><<a href="mailto:cantor.2@osu.edu" target="_blank">cantor.2@osu.edu</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><span class="">On 5/25/16, 1:04 PM, "users on behalf of Brent Putman" <<a href="mailto:users-bounces@shibboleth.net">users-bounces@shibboleth.net</a> on behalf of <a href="mailto:putmanb@georgetown.edu">putmanb@georgetown.edu</a>> wrote:<br>
<br>
>That wasn't my recollection, actually, I think I've always seen ProtocolBinding being sent.<br>
>At least as far back as I can remember. So I looked at one of our pretty vanilla SP's<br>
>running 2.5.5, and it does send ProtocolBinding.<br>
<br>
</span>Ok, might be implicated then. I still thought it defaulted, but I would have to look at it.<br>
<br>
In any case, it's bad form regardless obviously. If it wants to send a request and expect the IdP to ignore metadata processing it, then it doesn't follow that it should be omitting important details.<br>
<div class="HOEnZb"><div class="h5"><br>
-- Scott<br>
<br>
<br>
<br>
--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.net</a><br>
</div></div></blockquote></div><br><br clear="all"><br>-- <br><div class="gmail_signature"><div dir="ltr"><font size="2"><span title="yy27" style="padding:0px;border:0px none;list-style-type:none;color:rgb(0,0,0);font-family:verdana,arial,helvetica,sans-serif;line-height:16px"><span style="padding:0px;border:0px none;list-style-type:none">Yavor Yanakiev</span> </span><br style="padding:0px;border:0px none;list-style-type:none;color:rgb(0,0,0);font-family:verdana,arial,helvetica,sans-serif;line-height:16px"><span style="padding:0px;border:0px none;list-style-type:none;color:rgb(0,0,0);font-family:verdana,arial,helvetica,sans-serif;line-height:16px">Systems Developer for Identity Services</span></font><br><div>212-992-7585<br></div></div></div>
</div>