CAS 5.3.3 No RelayState for unsolicited SSO

209 views
Skip to first unread message

Juna Grosse Lengerich

unread,
Oct 9, 2018, 9:56:09 AM10/9/18
to CAS Community
Hi everyone,

we're currently implemnting a federated AWS login using CAS as an IDP via the SAML protocol.
While everything is working so far, we need to redirect the user to the correct region via the Relay State.

Unfortunately the supplied redirect is lost along the way.

The url we use to initiate the SSO:

And the relevant log entries:
DEBUG [org.apereo.cas.support.saml.web.idp.profile.AbstractSamlProfileHandlerController] - <Created service url [http://localhost:8080/idp/profile/SAML2/Callback.+?entityId=urn%3Aamazon%3Awebservices&SAMLRequest=PD94bWwgdmVyc2lvbj0iMS4...]>
DEBUG [org.apereo.cas.support.saml.web.idp.profile.AbstractSamlProfileHandlerController] - <Redirecting SAML authN request to [http://localhost:8080/login?service=http%3A%2F%2Flocalhost%3A8080%2Fidp%2Fprofile%2FSAML2%2FCallback.%2B%3FentityId%3Durn%253Aamazon%253Awebservices%26SAMLRequest%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%252BPHNhbWwycDpOYW1lSURQb2xpY3kgQWxsb3dDcmVhdGU9InRydWUiLz48L3NhbWwycDpBdXRoblJlcXVlc3Q%252B%26RelayState]>

DEBUG [org.apereo.cas.support.saml.web.idp.profile.builders.response.BaseSamlProfileSamlResponseBuilder] - <RelayState is []>

I haven't been able to find thet problem so far, does anyone know what's going wrong?

Thank you very much,

Juna

john.sebert

unread,
Dec 4, 2019, 2:33:23 PM12/4/19
to CAS Community
I am experiencing the same thing. Did you ever figure out how to get past this?
Reply all
Reply to author
Forward
0 new messages