<div dir="ltr"><div>Pablo,</div><div><br></div><div>INFO is never going to provide you much information and it's more probable that your issues are in the attribute filter. Anyway, by increasing the idp.loglevel.idp and idp.loglevel.ldap to DEBUG, you'll be able to see the full set of attributes at each point in the process(look for an array at the end of attribute resolution in particular) and their values.</div><div><br></div><div>Note that this is a significant privacy risk and you will never want to run this way in production.</div><div><br></div><div>Take it easy,</div><div>Nate.<br></div></div><div class="gmail_extra"><br><div class="gmail_quote">On Sat, Aug 25, 2018 at 12:36 AM, Pablo Vidaurri <span dir="ltr"><<a href="mailto:psvidaurri@gmail.com" target="_blank">psvidaurri@gmail.com</a>></span> wrote:<br><blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex"><div dir="ltr">How can I troubleshoot attribute resolution and filtering? I'm expecting an attribute to be released but isn't for a set of users. I've set my logback.xml to INFO for ldap which isn't providing much but I see no filtering activity being logged which would be helpful aswell.<div><br></div><div>I would like to see what attributes are found from ldap and db and which of those are being filtered.<br><div><br></div><div>Thanks.</div><div>-psv</div></div></div>
<br>-- <br>
For Consortium Member technical support, see <a href="https://wiki.shibboleth.net/confluence/x/coFAAg" rel="noreferrer" target="_blank">https://wiki.shibboleth.net/<wbr>confluence/x/coFAAg</a><br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net">users-unsubscribe@shibboleth.<wbr>net</a><br></blockquote></div><br></div>