Skip to Content.
Sympa Menu

shibboleth-dev - Re: testing the one-hop validation scenario

Subject: Shibboleth Developers

List archive

Re: testing the one-hop validation scenario


Chronological Thread 
  • From: Derek Atkins <>
  • To: "RL 'Bob' Morgan" <>
  • Cc: Shibboleth Design Team <>
  • Subject: Re: testing the one-hop validation scenario
  • Date: 05 Jun 2003 20:04:17 -0400

"RL 'Bob' Morgan"
<>
writes:

> I will leave the UW origin HS on shib.cac.washington.edu set up to use a
> server cert issued by the UW CA. To test with it, a target would add the
> UW site metadata to sites.xml, then add the UW CA to trust.xml in the
> KeyAuthority section corresponding to the incommon pilot, ie with all the
> other CA certs. Data below, also at

So, is the UW origin still using this same HS? I'm getting a different
error right now:

SHIRE failure at (http://localhost/shibboleth/SHIRE)

Exception: trust failed: ShibPOSTProfile::verifySignature() cannot
validate the provided signing certificate(s)

-derek

--
Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory
Member, MIT Student Information Processing Board (SIPB)
URL: http://web.mit.edu/warlord/ PP-ASEL-IA N1NWH


PGP key available

------------------------------------------------------mace-shib-design-+
For list utilities, archives, subscribe, unsubscribe, etc. please visit the
ListProc web interface at

http://archives.internet2.edu/

------------------------------------------------------mace-shib-design--




Archive powered by MHonArc 2.6.16.

Top of Page