<div dir="ltr"><div>Hi,<br><br>Shibbolet is configured for SAML artifact binding and following error can be seen in logs, when processing the ArtifactResolve SOAP request. <br><br><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">     ERROR [org.opensaml.ws.security.provider.MandatoryAuthenticatedMessageRule:37] - Inbound message issuer was not authenticated.<br>    12:54:22.906 - WARN [edu.internet2.middleware.shibboleth.idp.profile.saml2.ArtifactResolution:199] - Message did not meet security requirements<br>    org.opensaml.ws.security.SecurityPolicyException: Inbound message issuer was not authenticated.<br>        at org.opensaml.ws.security.provider.MandatoryAuthenticatedMessageRule.evaluate(MandatoryAuthenticatedMessageRule.java:38) ~[openws-1.5.6.jar:na]<br></blockquote><br>The issuer value of ArtifactResolve request, is same as the entityID of the SP metadata. What it meant by authenticating the issuer? and how it's done?<br><br></div><div>Appreciate your help on this.<br></div><div><br></div>Thanks and Regards<br clear="all"><div><div><br>-- <br><div class="gmail_signature"><div dir="ltr"><p style="font-family:arial;font-size:small;margin:6pt 0in 0.0001pt;background-image:initial;background-repeat:initial"><b><span style="font-size:10pt;font-family:Arial,sans-serif">Indunil Rathnayake <br></span></b></p></div></div>
</div></div></div>