<div dir="ltr">Are there any specific loggers for native ADFS support? Anything equivalent to <font face="monospace, monospace">log4j.category.OpenSAML.MessageDecoder</font> and <font face="monospace, monospace">log4j.category.OpenSAML.MessageEncoder</font>?</div><div class="gmail_extra"><br><div class="gmail_quote">On 19 September 2017 at 21:32, Cantor, Scott <span dir="ltr"><<a href="mailto:cantor.2@osu.edu" target="_blank">cantor.2@osu.edu</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><span class="">> What exactly causes it to move along the chain? Would it only do that if it<br>
> thinks there's no explicit key configured (i.e. a metadata problem as Rod<br>
> suggests)?<br>
<br>
</span>It falls through if an explicit key verification fails, for whatever reasons. The wiki documents in exhaustive detail exactly what it does in each trust engine.<br>
<div class="HOEnZb"><div class="h5"><br>
-- Scott<br>
<br>
--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.<wbr>net</a><br>
</div></div></blockquote></div><br><br clear="all"><div><br></div>-- <br><div class="gmail_signature" data-smartmail="gmail_signature"><div dir="ltr">Best regards,<br><br>Robert Lowe<br><a href="http://crepuscular.rmlowe.com/" target="_blank">http://crepuscular.rmlowe.com/</a></div></div>
</div>