<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
</head>
<body style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space;" class="">
Hi Scott,
<div class=""><br class="">
</div>
<div class="">Thank you for updating the instruction. Our IDP 3 has the default configuration and I added the configuration in Shibboleth SP according to your instruction. When I tried, there was no error found in IDP log. SP’s log show error: </div>
<div class="">
<div style="margin: 0px; font-size: 11px; font-family: Menlo;" class="">ERROR Shibboleth.Listener [15342] shib_handler: remoted message returned an error: No compatible endpoint found in issuer's metadata.</div>
</div>
<div style="margin: 0px; font-size: 11px; font-family: Menlo;" class=""><br class="">
</div>
<div style="margin: 0px; font-size: 11px; font-family: Menlo;" class="">What does this mean? How to resolve it?</div>
<div class=""><br class="">
</div>
<div class="">Thanks,<br class="">
<div apple-content-edited="true" class="">
<div class="">
<div style="orphans: 2; widows: 2;" class="">Hong</div>
</div>
</div>
<br class="">
<div>
<blockquote type="cite" class="">
<div class="">On Jun 1, 2016, at 12:08 PM, Cantor, Scott <<a href="mailto:cantor.2@osu.edu" class="">cantor.2@osu.edu</a>> wrote:</div>
<br class="Apple-interchange-newline">
<div class="">
<blockquote type="cite" class="">There is instruction of setting up WebDAV with Shibboleth IDP 2. Is there any<br class="">
instruction for IDP 3?<br class="">
</blockquote>
<br class="">
I would hope WebDAV would be dead at this point, seeing as it's widely recognized as a horrible idea now. I know it gets used with subversion, but that wouldn't support SAML anyway.<br class="">
<br class="">
That example is quite out of date in a lot of ways, and it doesn't have much to do with the IdP to begin with.<br class="">
<br class="">
<blockquote type="cite" class="">Has anyone had WebDav working with IDP 3?<br class="">
</blockquote>
<br class="">
If you control the IdP(s), then you can certainly use the artifact binding.  If you don't control the IdP, don't waste your time.<br class="">
<br class="">
The authentication part is much simpler, you don't have to do anything like this anymore, or run Apache in front of it. Any client that offers basic-authentication to the IdP will be able to bypass the login form if the Password flow is used.<br class="">
<br class="">
-- Scott<br class="">
<br class="">
-- <br class="">
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net" class="">
users-unsubscribe@shibboleth.net</a><br class="">
</div>
</blockquote>
</div>
<br class="">
</div>
</body>
</html>