SAML to CAS but no SAML response after authentication

116 views
Skip to first unread message

Keith Alston (Staff)

unread,
Apr 12, 2021, 4:58:06 PM4/12/21
to cas-...@apereo.org
I've configured a SAML 2.0 service using CAS 5.3.

Using SAML trace I see a SAML request to CAS, 
I get the login page, authenticate successfully
I'm redirected but I never see a SAML response to the SP.
"Error in processing saml response" at the SP.

Does anyone have any idea why this might be happening?

Keith Alston
Regent University
IT Department

Ray Bon

unread,
Apr 12, 2021, 5:11:40 PM4/12/21
to cas-...@apereo.org
Keith,

Check your cas logs, perhaps on debug, to see why it did not generate a SAML response.

Ray

On Mon, 2021-04-12 at 20:57 +0000, Keith Alston (Staff) wrote:
Notice: This message was sent from outside the University of Victoria email system. Please be cautious with links and sensitive information.
-- 
Ray Bon
Programmer Analyst
Development Services, University Systems

I respectfully acknowledge that my place of work is located within the ancestral, traditional and unceded territory of the Songhees, Esquimalt and WSÁNEĆ Nations.

Mike Osterman

unread,
Apr 12, 2021, 11:15:22 PM4/12/21
to CAS Community
If I'm reading your message correctly about the SP displaying an exception, you might also want to ask the SP to check their logs as well. I've had cases where I did everything I could to debug on my end, and it ended up that the SP had misconfigured our IdP registration on their end.

Good luck!
Mike

--
- Website: https://apereo.github.io/cas
- Gitter Chatroom: https://gitter.im/apereo/cas
- List Guidelines: https://goo.gl/1VRrw7
- Contributions: https://goo.gl/mh7qDG
---
You received this message because you are subscribed to the Google Groups "CAS Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email to cas-user+u...@apereo.org.
To view this discussion on the web visit https://groups.google.com/a/apereo.org/d/msgid/cas-user/b73f2af4633c43736af6697f61bcfd3e46d2b300.camel%40uvic.ca.

Keith Alston (Staff)

unread,
Apr 13, 2021, 1:42:48 AM4/13/21
to cas-...@apereo.org
Looks like I'm generating the response but it's not being sent:

Action] - <Built response [org.apereo.cas.authentication.principal.DefaultRespon
se@1574074c] for [AbstractWebApplicationService(id=https://regent-team.myfreshwo
reshworks.com/sp/SAML/26912657608931/callback, artifactId=null, principal=ke
ithal, source=AssertionConsumerServiceURL, loggedOutAlready=true, format=XML, at
tributes={})]>

loggedOutAlready = true ????

the only thing I see that looks suspicious is this:

2021-04-12 17:59:58,509 DEBUG [org.apereo.cas.web.view.CasReloadableMessageBundl
e] - <No properties file found for [classpath:custom_messages_en_US] - neither p
lain properties nor XML>
2021-04-12 17:59:58,511 DEBUG [org.apereo.cas.web.view.CasReloadableMessageBundl
e] - <No properties file found for [classpath:messages_en_US] - neither plain pr
operties nor XML>
2021-04-12 17:59:58,512 DEBUG [org.apereo.cas.web.view.CasReloadableMessageBundl
e] - <No properties file found for [classpath:custom_messages_en] - neither plai
n properties nor XML>
2021-04-12 17:59:58,513 DEBUG [org.apereo.cas.web.view.CasReloadableMessageBundl
e] - <Loading properties [custom_messages.properties] with encoding 'UTF-8'>
2021-04-12 17:59:58,514 DEBUG [org.apereo.cas.web.view.CasReloadableMessageBundl
e] - <No properties file found for [classpath:messages_en] - neither plain prope
rties nor XML>
2021-04-12 17:59:58,515 DEBUG [org.apereo.cas.web.view.CasReloadableMessageBundl
e] - <Loading properties [messages.properties] with encoding 'UTF-8'>
2021-04-12 17:59:58,532 DEBUG [org.springframework.webflow.execution.ActionExecu
tor] - <Finished executing org.springframework.webflow.action.ViewFactoryActionA
dapter@6ef0e68d; result = success>
2021-04-12 17:59:58,532 DEBUG [org.springframework.webflow.engine.Transition] -
<Completed transition execution.  As a result, the flow execution has ended>



Keith Alston
Regent University
IT Department

From: cas-...@apereo.org <cas-...@apereo.org> on behalf of Ray Bon <rb...@uvic.ca>
Sent: Monday, April 12, 2021 5:11 PM
To: cas-...@apereo.org <cas-...@apereo.org>
Subject: [External] Re: [cas-user] SAML to CAS but no SAML response after authentication
 
--
Reply all
Reply to author
Forward
0 new messages