<div dir="ltr">Hello Dean,<div><br></div><div>The main time I have seen this its been due to the fact that the URL that is protected with shibboleth i.e <a href="http://dev-sp.it.wsu.edu/secure">dev-sp.it.wsu.edu/secure</a> isn't being accessed over https. For example users are going to <a href="http://dev-sp.it.wsu.edu/secure">http://dev-sp.it.wsu.edu/secure</a> instead of <a href="https://dev-sp.it.wsu.edu/secure">https://dev-sp.it.wsu.edu/secure</a>.</div><div><br></div><div>So first thing to check would be that your accessing the site over https for the location that is protected by shibboleth.</div><div><br></div><div>As an aside it maybe easier to just set your cookieprops to https so i.e: cookieProps="https" if your using V2.5+</div><div><br></div><div>Not sure if you have seen this page here that goes over some more common issues with SP Looping: <a href="https://wiki.shibboleth.net/confluence/display/SHIB2/NativeSPLooping">https://wiki.shibboleth.net/confluence/display/SHIB2/NativeSPLooping</a></div><div><br></div><div>Thanks</div><div><br>Kindest Regards</div><div><br></div><div>Chris</div><div><br></div><div><br></div><div class="gmail_extra"><br><div class="gmail_quote">On 11 October 2017 at 00:41, Guenther, Dean R. <span dir="ltr"><<a href="mailto:guenther@wsu.edu" target="_blank">guenther@wsu.edu</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">







<div bgcolor="white" lang="EN-US">
<div class="gmail-m_6384454616921340963WordSection1">
<p class="MsoNormal"><span style="font-family:Garamond,serif">I’m having a problem with setting up my first Windows SP. The IdP has been in service for several years. I can call a service on the SP (called “secure”) and I see it redirect properly to the IdP.
 I can successfully enter my Network ID and password. And I see that the IdP correctly sends assertions to the SP. But when it returns from the IdP back to the SP it wants to start a whole new session again.  Ending up in an endless loop. I’ve searched the
 archives and didn’t find any solutions that worked for me.<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">My environment:<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">* A pair of linux IdPs behind a load balancer<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">* A single Windows SP behind a load balancer (in the future I’ll have a pair)<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">Calling “Shibboleth.sso\Status” and running “shibd.exe –check” both are good.<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">One thing I find odd is that all traffic from the loadbalancer to the SP comes to the SP as one IP address (Eg 192.1.2.3)<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">which is the load balancer. Which is to say, a client who is 10.4.5.6 gets changed to 192.1.2.3 when it arrives at the SP.<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">Likewise, if the IdP is 134.2.3.4 when redirected back to the SP it also shows up as 192.1.2.3. I know that’s just<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">the way the load balancer is setup. Could this be a problem?<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">Here is my shibboleth2.xml:<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif"><SPConfig
<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">    clockSkew="180"><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">    <InProcess logger="native.logger"><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">        <ISAPI normalizeRequest="true" safeHeaderNames="false"><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">            <Site id="1" name="<a href="http://dev-sp.it.wsu.edu" target="_blank">dev-sp.it.wsu.edu</a>" scheme="https" port="443"/><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">        </ISAPI><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">    </InProcess><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">    <RequestMapper type="Native"><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">        <RequestMap><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">            <Host name="<a href="http://dev-sp.it.wsu.edu" target="_blank">dev-sp.it.wsu.edu</a>" redirectToSSL="443"><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">                        <Path name="secure" authType="shibboleth" requireSession="true"/><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">            </Host><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">       </RequestMap><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">    </RequestMapper><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">    <ApplicationDefaults entityID="<a href="https://dev-sp.it.wsu.edu/" target="_blank">https://dev-sp.it.<wbr>wsu.edu/</a>"<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">                         REMOTE_USER="employeeNumber uid "<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">                         cipherSuites="ECDHE+AESGCM:<wbr>ECDHE:!aNULL:!eNULL:!LOW:!<wbr>EXPORT:!RC4:!SHA:!SSLv2"><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">            <Sessions lifetime="32400" timeout="32400" checkAddress="false"<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">                        consistentAddress="true" relayState="ss:mem" handlerSSL="true"<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">                        postData="ss:mem" postTemplate="postTemplate.<wbr>html" <u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">                        cookieProps="; HttpOnly path=/; secure"><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">            <SSO entityID="<a href="https://dev-idp.it.wsu.edu/idp/shibboleth" target="_blank">https://dev-idp.it.<wbr>wsu.edu/idp/shibboleth</a>"<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">                        discoveryProtocol="SAMLDS"<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">                        discoveryURL="<a href="https://dev-idp.it.wsu.edu/DS/WAYF%22" target="_blank">https://dev-idp.<wbr>it.wsu.edu/DS/WAYF"</a>><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">                        SAML2 SAML1<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">            </SSO><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">            <Logout>SAML2 Local</Logout><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">            <Handler type="MetadataGenerator" Location="/Metadata" signing="false"/><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">            <Handler type="Status" Location="/Status" acl="127.0.0.1 ::1  192.1.2.3"/><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">            <Handler type="Session" Location="/Session" showAttributeValues="true"/><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">            <Handler type="DiscoveryFeed" Location="/DiscoFeed"/><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">        </Sessions><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">            <MetadataProvider type="XML"<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">                        uri="<a href="https://dev-idp.it.wsu.edu/idp/profile/Metadata/SAML" target="_blank">https://dev-idp.it.wsu.<wbr>edu/idp/profile/Metadata/SAML</a>"<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">                        backingFilePath="<a href="http://dev-dp.it">dev-dp.it</a>.<wbr>wsu.edu.metadata.xml" reloadInterval="7200">        <wbr>  <u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">        </MetadataProvider><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">        <AttributeExtractor type="XML" validate="true" reloadChanges="false" path="attribute-map.xml"/><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">        <AttributeResolver type="Query" subjectMatch="true"/><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">        <AttributeFilter type="XML" validate="true" path="attribute-policy.xml"/><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">        <CredentialResolver type="File" key="sp-key.pem" certificate="sp-cert.pem"/><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">    </ApplicationDefaults><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">    <SecurityPolicyProvider type="XML" validate="true" path="security-policy.xml"/><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">    <ProtocolProvider type="XML" validate="true" reloadChanges="false" path="protocols.xml"/><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif"></SPConfig><u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">Now I’ll show what I see in the logs (I added DEBUG).<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">From the transaction log there is a new session:<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:24 INFO Shibboleth-TRANSACTION [1]: New session (ID: _<wbr>2e2ff5942eee70e545d547a17f10cb<wbr>68) with (applicationId: default) for principal from (IdP: <a href="https://dev-idp.it.wsu.edu/idp/shibboleth" target="_blank">https://dev-idp.it.wsu.<wbr>edu/idp/shibboleth</a>)
 at (ClientAddress: 192.1.2.3) with (NameIdentifier: _<wbr>c903d65316185de5601c9ab64d457e<wbr>fd) using (Protocol: urn:oasis:names:tc:SAML:2.0:<wbr>protocol) from (AssertionID: _<wbr>fe90e6343940bf111acce98d9ad7f1<wbr>16)<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"><u></u> <u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">Then in the shibd.log you can see this session inserted (I’ve removed a lot of the chatter, hopefully not too much):<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:24 DEBUG Shibboleth.SessionCache [1]: creating new session<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:24 DEBUG Shibboleth.SessionCache [1]: storing new session...<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:24 DEBUG XMLTooling.StorageService [1]: inserted record (session) in context (_<wbr>2e2ff5942eee70e545d547a17f10cb<wbr>68) with expiration (1507360104)<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:24 INFO Shibboleth.SessionCache [1]: new session created: ID (_<wbr>2e2ff5942eee70e545d547a17f10cb<wbr>68) IdP (<a href="https://dev-idp.it.wsu.edu/idp/shibboleth" target="_blank">https://dev-idp.it.wsu.edu/<wbr>idp/shibboleth</a>)
 Protocol(urn:oasis:names:tc:<wbr>SAML:2.0:protocol) Address (192.1.2.3)<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:24 DEBUG Shibboleth.SSO.SAML2 [1]: ACS returning via redirect to: <a href="https://dev-sp.it.wsu.edu/secure" target="_blank">https://dev-sp.it.wsu.edu/<wbr>secure</a><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:24 DEBUG OpenSAML.MessageEncoder.<wbr>SAML2Redirect [1]: marshalled message:<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif"><samlp:AuthnRequest xmlns:samlp="urn:oasis:names:<wbr>tc:SAML:2.0:protocol" AssertionConsumerServiceURL="<a href="https://dev-sp.it.wsu.edu/Shibboleth.sso/SAML2/POST" target="_blank">h<wbr>ttps://dev-sp.it.wsu.edu/<wbr>Shibboleth.sso/SAML2/POST</a>"
 Destination="<a href="https://dev-idp.it.wsu.edu/idp/profile/SAML2/Redirect/SSO" target="_blank">https://dev-idp.<wbr>it.wsu.edu/idp/profile/SAML2/<wbr>Redirect/SSO</a>" ID="_<wbr>b73b7072cd5f9b9fc36c7dfb20be73<wbr>0a" IssueInstant="2017-10-06T22:<wbr>08:24Z" ProtocolBinding="urn:oasis:<wbr>names:tc:SAML:2.0:bindings:<wbr>HTTP-POST"
 Version="2.0"><saml:Issuer xmlns:saml="urn:oasis:names:<wbr>tc:SAML:2.0:assertion"><a href="https://dev-sp.it.wsu.edu/%3c/saml:Issuer%3e%3csamlp:NameIDPolicy" target="_blank">https:/<wbr>/dev-sp.it.wsu.edu/</saml:<wbr>Issuer><samlp:NameIDPolicy</a> <wbr>AllowCreate="1"/></samlp:<wbr>AuthnRequest><u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif"><u></u> <u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">.<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">.<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">. <u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:25 DEBUG Shibboleth.SSO.SAML2 [1]: SSO profile processing completed successfully<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:25 DEBUG Shibboleth.SSO.SAML2 [1]: extracting pushed attributes...<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:25 DEBUG Shibboleth.AttributeFilter [1]: filtering 4 attribute(s) from (<a href="https://dev-idp.it.wsu.edu/idp/shibboleth" target="_blank">https://dev-idp.it.wsu.edu/<wbr>idp/shibboleth</a>)<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:25 DEBUG Shibboleth.SSO.SAML2 [1]: resolving attributes...<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">So I can see that the IdP successfully passed assertions back to the SP like expected.<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">And for some reason, it starts a new session all over and does not continue with the above session:<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:25 DEBUG Shibboleth.SessionCache [1]: creating new session<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:25 DEBUG Shibboleth.SessionCache [1]: storing new session...<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:25 DEBUG XMLTooling.StorageService [1]: inserted record (session) in context (_<wbr>b3dbbf5e504b36cef0054c707e8bc8<wbr>d1) with expiration (1507360105)<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:25 DEBUG XMLTooling.StorageService [1]: updated record (_<wbr>c903d65316185de5601c9ab64d457e<wbr>fd) in context (NameID) with expiration (1507360105)<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:25 DEBUG XMLTooling.StorageService [1]: inserted record (_<wbr>8844a118fbbdbe128b0e39ade4695f<wbr>66) in context (_<wbr>b3dbbf5e504b36cef0054c707e8bc8<wbr>d1) with expiration
 (1507360105)<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:25 INFO Shibboleth.SessionCache [1]: new session created: ID (_<wbr>b3dbbf5e504b36cef0054c707e8bc8<wbr>d1) IdP (<a href="https://dev-idp.it.wsu.edu/idp/shibboleth" target="_blank">https://dev-idp.it.wsu.edu/<wbr>idp/shibboleth</a>)
 Protocol(urn:oasis:names:tc:<wbr>SAML:2.0:protocol) Address (192.1.2.3)<u></u><u></u></span></p>
<p class="MsoNormal" style="margin-left:0.5in"><span style="font-family:Garamond,serif">2017-10-06 15:08:25 DEBUG XMLTooling.StorageService [1]: deleted record (<wbr>43c735b0c32fdead9da3eb39252daf<wbr>ec58b691d04cfda9bcb84b0fc8e651<wbr>e433) in context (RelayState)<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">And sure enough, the transaction log also shows a new session:<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">And the process loops over and over and over ….<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">I’ve tried various suggestions in the archives related to looping, but I haven’t found the right answer yet.<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"> <u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif">thanks – Dean<u></u><u></u></span></p>
<p class="MsoNormal"><span style="font-family:Garamond,serif"><u></u> <u></u></span></p>
<div>
<p class="MsoNormal"><span style="font-size:10.5pt;color:black"><u></u> <u></u></span></p>
</div>
<p class="MsoNormal"><span style="font-size:10.5pt;color:black"><u></u> <u></u></span></p>
<div>
<p class="MsoNormal"><span style="font-size:10pt;color:black">Dean Guenther                          </span><span style="font-size:10.5pt;color:black"><a href="mailto:dean.guenther@wsu.edu" target="_blank"><span style="font-size:10pt;color:blue">dean.guenther@wsu.edu</span></a></span><span style="font-size:10pt;color:black"><br>
Washington State University    Phone:    <a href="tel:(509)%20335-0433" value="+15093350433" target="_blank">509 335-0433</a><br>
Pullman, WA. 99164-1222        fax:      <a href="tel:(509)%20335-0540" value="+15093350540" target="_blank">509 335-0540</a><br>
Identity and Access Management Manager</span><span style="font-size:10.5pt;color:black"><u></u><u></u></span></p>
</div>
<p class="MsoNormal"><u></u> <u></u></p>
</div>
</div>

<br>--<br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.<wbr>net</a><br></blockquote></div><br><br clear="all"><div><br></div>-- <br><div class="gmail_signature"><div dir="ltr"><div dir="ltr">







<p>-- <br></p>
<p>Chris Andre</p>
<p>CTO, Overt Software Solutions Ltd</p>
<p>For support queries please email <a href="mailto:support@overtsoftware.com" target="_blank">support@overtsoftware.com</a> to ensure that your query is sent to all available engineers.</p>
<p>Cloud Hosting / Dedicated Servers | Shibboleth | Moodle | Cloud backups & file sharing</p>
<p>Checkout our Shibboleth Self Heal Webinar here <a href="https://www.overtsoftware.com/webinars/">https://www.overtsoftware.com/webinars/</a> </p>
<p>T: 0330 2000 141 | E: <a href="mailto:candre@overtsoftware.com" target="_blank">candre@overtsoftware.com</a> | <a href="http://www.overtsoftware.com/" target="_blank"><span>www.overtsoftware.com</span></a></p>
<p><br></p></div></div></div>
</div></div>