<html><head><meta http-equiv="Content-Type" content="text/html charset=utf-8"></head><body style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space;" class="">Hey all, the last post was derailed because of a misunderstanding so any help is appreciated. <div class=""><br class=""></div><div class=""><div class=""><div class="">I’ve been in the process of upgrading my test IdP with the entityID of <a href="https://auth-test.uakron.edu/idp/shibboleth" class="">https://auth-test.uakron.edu/idp/shibboleth</a> and get the </div><div class="">following messages when on shibtest. I do not have any problems with my SPs but I figured I’d ask since I’m having an issue</div><div class="">with an outside SP (not using shib).</div><div class=""><br class=""></div><div class="">This is NOT my production IdP and is NOT in InCommon. This is NOT related to the IdP <a href="https://id.uakron.edu/idp/shibboleth" class="">https://id.uakron.edu/idp/shibboleth</a> in any way. </div><div class=""><pre class="" style="font-variant-ligatures: normal; font-variant-position: normal; font-variant-numeric: normal; font-variant-alternates: normal; font-variant-east-asian: normal; line-height: normal; widows: 1; word-wrap: break-word; white-space: pre-wrap;"><pre class="" style="font-variant-ligatures: normal; font-variant-position: normal; font-variant-numeric: normal; font-variant-alternates: normal; font-variant-east-asian: normal; line-height: normal; word-wrap: break-word; white-space: pre-wrap;">DEBUG XMLTooling.CredentialCriteria [1637]: key algorithm didn't match ('AES' != 'RSA')
DEBUG XMLTooling.KeyInfoResolver.Inline [1637]: resolving ds:X509Certificate
DEBUG XMLTooling.KeyInfoResolver.Inline [1637]: resolved 1 certificate(s)
DEBUG XMLTooling.CredentialCriteria [1637]: credential name(s) didn't overlap
DEBUG XMLTooling.CredentialCriteria [1637]: keys didn't match</pre><div class="">and</div><div class=""><pre class="" style="font-variant-ligatures: normal; font-variant-position: normal; font-variant-numeric: normal; font-variant-alternates: normal; font-variant-east-asian: normal; line-height: normal; word-wrap: break-word; white-space: pre-wrap;">DEBUG XMLTooling.KeyInfoResolver.Inline [1634]: resolving ds:X509Certificate
DEBUG XMLTooling.KeyInfoResolver.Inline [1634]: resolved 1 certificate(s)
DEBUG XMLTooling.KeyInfoResolver.Inline [1634]: resolved 0 CRL(s)
DEBUG XMLTooling.TrustEngine.ExplicitKey [1634]: attempting to match credentials from peer with end-entity certificate
DEBUG XMLTooling.TrustEngine.ExplicitKey [1634]: no keys within this peer's key information matched the given end-entity certificate
DEBUG XMLTooling.TrustEngine.PKIX [1634]: performing certificate path validation...
DEBUG XMLTooling.TrustEngine.PKIX [1634]: failed to validate certificate chain using supplied PKIX information
ERROR XMLTooling.SOAPTransport.CURL [1634]: supplied TrustEngine failed to validate SSL/TLS server certificate
</pre></div><div class="">any comments/suggestions on this would be great.</div></pre></div><div class="">Thanks,</div></div><div class="">Mike Weyandt</div></div></body></html>