<div dir="ltr"><div dir="ltr">Thanks, both!<div><br></div><div>Incidentally, I notice that the sample metadata generated includes this uncommented entry:</div><div><br></div><div><ArtifactResolutionService Binding="urn:oasis:names:tc:SAML:2.0:bindings:SOAP" Location="<a href="https://host.example.com:8443/idp/profile/SAML2/SOAP/ArtifactResolution">https://host.example.com:8443/idp/profile/SAML2/SOAP/ArtifactResolution</a>" index="2"/><br></div><div><br></div><div>I'm surprised by the 8443 reference. However, I do appreciate that this is only example metadata. We have `idp.artifact.enabled = false` in idp.properties anyway.</div><div><br></div><div>Max</div></div><br><div class="gmail_quote"><div dir="ltr" class="gmail_attr">On Tue, 17 Oct 2023 at 15:30, Rod Widdowson <<a href="mailto:rdw@steadingsoftware.com">rdw@steadingsoftware.com</a>> wrote:<br></div><blockquote class="gmail_quote" style="margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">> The intent was that it only runs on an initial install though, which can assume the usual properties. The bug might be in whatever<br>
> caused it to run but I seem to recall I reported that and we fixed it.<br>
<br>
In V4 it runs if it cannot file %{idp.home}\metadata\idp-metadata.xml, so that's another workaround - just create an empty file<br>
there.<br>
<br>
As Scott says its fixed and we only generate on clean installs (and even then only if the old file doesn't exist)<br>
<br>
Rod<br>
<br>
<br>
-- <br>
For Consortium Member technical support, see <a href="https://shibboleth.atlassian.net/wiki/x/ZYEpPw" rel="noreferrer" target="_blank">https://shibboleth.atlassian.net/wiki/x/ZYEpPw</a><br>
To unsubscribe from this list send an email to <a href="mailto:users-unsubscribe@shibboleth.net" target="_blank">users-unsubscribe@shibboleth.net</a><br>
</blockquote></div><div dir="ltr" class="gmail_signature"><div dir="ltr"><div dir="ltr"><div dir="ltr"><div dir="ltr"><div style="font-size:small"><br></div></div></div></div></div></div></div>