<html xmlns:v="urn:schemas-microsoft-com:vml" xmlns:o="urn:schemas-microsoft-com:office:office" xmlns:w="urn:schemas-microsoft-com:office:word" xmlns:m="http://schemas.microsoft.com/office/2004/12/omml" xmlns="http://www.w3.org/TR/REC-html40"><head><META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=us-ascii"><meta name=Generator content="Microsoft Word 15 (filtered medium)"><style><!--
/* Font Definitions */
@font-face
{font-family:"Cambria Math";
panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
{font-family:Calibri;
panose-1:2 15 5 2 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
{margin:0cm;
font-size:11.0pt;
font-family:"Calibri",sans-serif;
mso-fareast-language:EN-US;}
span.EmailStyle17
{mso-style-type:personal-compose;
font-family:"Calibri",sans-serif;
color:windowtext;}
.MsoChpDefault
{mso-style-type:export-only;
font-family:"Calibri",sans-serif;
mso-fareast-language:EN-US;}
@page WordSection1
{size:612.0pt 792.0pt;
margin:72.0pt 72.0pt 72.0pt 72.0pt;}
div.WordSection1
{page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]--></head><body lang=EN-GB link="#0563C1" vlink="#954F72" style='word-wrap:break-word'><div class=WordSection1><p class=MsoNormal><o:p> </o:p></p><p class=MsoNormal>Morning,<o:p></o:p></p><p class=MsoNormal> I’ve a remote user signing in to our IDP (SAML2 HTTP Post) using a VirtualBox Ubuntu VM who gets a 500 error before any kind of authentication prompt. (Client is Cisco Anyconnect which works fine outside of Virtualbox from our testing )<o:p></o:p></p><p class=MsoNormal><o:p> </o:p></p><p class=MsoNormal>I’ve got the log level at Debug, and aside from timestamps/JsessionIDs, there’s no difference between the logs for his connection vs my successful connection until the uncaught exception error.<o:p></o:p></p><p class=MsoNormal><o:p> </o:p></p><p class=MsoNormal>This is a snippet of the logs for the unsuccessful request <o:p></o:p></p><p class=MsoNormal><o:p> </o:p></p><p class=MsoNormal>2022-10-04 14:22:10,514 - [117477BDB2537A3F521C6B9423BDEABD] - aaa.bbb.126.12 - DEBUG [net.shibboleth.idp.authn.impl.PopulateAuthenticationContext:213] - Profile Action PopulateAuthenticationContext: Installed 1 potential authentication flows into AuthenticationContext<o:p></o:p></p><p class=MsoNormal>2022-10-04 14:22:10,514 - [117477BDB2537A3F521C6B9423BDEABD] - aaa.bbb.126.12 - DEBUG [net.shibboleth.idp.session.impl.PopulateSessionContext:145] - Profile Action PopulateSessionContext: No session found for client<o:p></o:p></p><p class=MsoNormal>2022-10-04 14:22:10,533 - [117477BDB2537A3F521C6B9423BDEABD] - aaa.bbb.126.12 - ERROR [net.shibboleth.idp.authn:-2] - Uncaught runtime exception<o:p></o:p></p><p class=MsoNormal>2022-10-04 14:22:10,535 - [117477BDB2537A3F521C6B9423BDEABD] - aaa.bbb.126.12 - WARN [org.opensaml.profile.action.impl.LogEvent:101] - A non-proceed event occurred while processing the request: RuntimeException<o:p></o:p></p><p class=MsoNormal><o:p> </o:p></p><p class=MsoNormal>Vs the successful one<o:p></o:p></p><p class=MsoNormal><o:p> </o:p></p><p class=MsoNormal>2022-10-04 12:03:33,630 - [0D861F4157D7245C22D2DC14AE1BB047] - ccc.ddd.228.248 - DEBUG [net.shibboleth.idp.authn.impl.PopulateAuthenticationContext:213] - Profile Action PopulateAuthenticationContext: Installed 1 potential authentication flows into AuthenticationContext<o:p></o:p></p><p class=MsoNormal>2022-10-04 12:03:33,630 - [0D861F4157D7245C22D2DC14AE1BB047] - ccc.ddd.228.248 - DEBUG [net.shibboleth.idp.session.impl.PopulateSessionContext:145] - Profile Action PopulateSessionContext: No session found for client<o:p></o:p></p><p class=MsoNormal>2022-10-04 12:03:33,631 - [0D861F4157D7245C22D2DC14AE1BB047] - ccc.ddd.228.248 - DEBUG [net.shibboleth.idp.authn.impl.InitializeRequestedPrincipalContext:152] - Profile Action InitializeRequestedPrincipalContext: Profile configuration did not supply any default authentication methods<o:p></o:p></p><p class=MsoNormal>2022-10-04 12:03:33,631 - [0D861F4157D7245C22D2DC14AE1BB047] - ccc.ddd.228.248 - DEBUG [net.shibboleth.idp.authn.impl.FilterFlowsByForcedAuthn:76] - Profile Action FilterFlowsByForcedAuthn: Retaining flow authn/SAML, it supports forced authentication<o:p></o:p></p><p class=MsoNormal>2022-10-04 12:03:33,631 - [0D861F4157D7245C22D2DC14AE1BB047] - ccc.ddd.228.248 - DEBUG [net.shibboleth.idp.authn.impl.FilterFlowsByForcedAuthn:88] - Profile Action FilterFlowsByForcedAuthn: Potential authentication flows left after filtering: [authn/SAML]<o:p></o:p></p><p class=MsoNormal><o:p> </o:p></p><p class=MsoNormal><o:p> </o:p></p><p class=MsoNormal>Any thoughts on where I can go from here to try and find the reason for the client being returned a 500 error?<o:p></o:p></p><p class=MsoNormal><o:p> </o:p></p><p class=MsoNormal>Thanks,<o:p></o:p></p><p class=MsoNormal> Duncan <o:p></o:p></p></div></body></html>