<div dir="ltr"><div class="gmail_quote"><div dir="ltr">On Thu, Aug 16, 2018 at 2:16 AM Rod Widdowson <<a href="mailto:rdw@steadingsoftware.com" target="_blank">rdw@steadingsoftware.com</a>> wrote:<br></div><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">> <rp:RelyingParty id="<sp_entityid>" provider="<a href="https://idp.reed.edu/idp/shibboleth" rel="noreferrer" target="_blank">https://idp.reed.edu/idp/shibboleth</a>" defaultSigningCredentialRef="IdPCredential"><br>
> <rp:ProfileConfiguration xsi:type="saml:SAML2SSOProfile" encryptAssertions="false" encryptNameIds="false" /><br>
> </rp:RelyingParty><br>
<br>
No help, and you don't need to hear this having only just moved up from v2, but my strongest suggestion right now is to take the time to upgrade to the new relying-party.xml syntax. Most people find it much easier to do.<br>
<br>
The next IdP release (3.4 and any patches) will be the last release to support the legacy syntax.<br></blockquote><div> </div><div>Thanks Rod. I know that syntax update needs to happen, and I've spent a bit of time looking at the docs. But of course I'm in a time crunch to get this new SP working ASAP. As it's the only SP given us trouble at the moment I'd like to get it working and then work out the syntax updates when there's more time.</div><div> </div><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex">
> Any suggestions on how to proceed or troubleshoot would be gratefully accepted!<br>
<br>
Logging is always going to be helpful. "net.shibboleth.idp.saml" might give you enough info/ But having spelunked through the code I think that you are getting confused by the settings . AFAIR the values can be "always", "condtional" or "never". But also from the code you should have had a warning about it as well.<br><br></blockquote><div><br></div><div>Yeah, confusion is a definite possibility! I've probably spent too much time looking through mailing list posts and not enough looking through the official documentation.</div><div> </div><div>Thanks again for your suggestions!</div><div><br></div><div>Ben</div></div></div>