[JIRA] (JENKINS-59097) SAML Plugin ADFS - Not sending Name field in request - Could not construct the directory structure for SP metadata

4 views
Skip to first unread message

jbasharat@imolainformatica.it (JIRA)

unread,
Aug 27, 2019, 5:21:02 AM8/27/19
to jenkinsc...@googlegroups.com
jahan zaib created an issue
 
Jenkins / Bug JENKINS-59097
SAML Plugin ADFS - Not sending Name field in request - Could not construct the directory structure for SP metadata
Issue Type: Bug Bug
Assignee: Ivan Fernandez Calvo
Components: saml-plugin
Created: 2019-08-27 09:20
Priority: Minor Minor
Reporter: jahan zaib

Hi, I have a dockerized Jenkins where I've installed the saml-plugin. I've done the basic settings but in SAML request it doesn't send a NameID policy. Another thing is that in logs it says:

Could not construct the directory structure for SP metadata /var/jenkins_home/saml-sp-metadata.xml

Why is that?

Thanks

Add Comment Add Comment
 
This message was sent by Atlassian Jira (v7.11.2#711002-sha1:fdc329d)

jbasharat@imolainformatica.it (JIRA)

unread,
Aug 27, 2019, 6:38:02 AM8/27/19
to jenkinsc...@googlegroups.com
jahan zaib updated an issue
Change By: jahan zaib
Attachment: gitlab-saml-request.txt
Attachment: jenkins-saml-request.txt
Hi, I have a dockerized Jenkins where I've installed the saml-plugin. I've done the basic settings but in SAML request it doesn't send a NameID policy. For comparison I am attaching the SAML request from a Gitlab instance to ADFS and a SAML request from Jenkins to ADFS.

 

Another thing is that in logs it says:

Could not construct the directory structure for SP metadata /var/jenkins_home/saml-sp-metadata.xml

Why is that?

Thanks

kuisathaverat@gmail.com (JIRA)

unread,
Aug 27, 2019, 7:28:02 AM8/27/19
to jenkinsc...@googlegroups.com

kuisathaverat@gmail.com (JIRA)

unread,
Aug 27, 2019, 7:28:03 AM8/27/19
to jenkinsc...@googlegroups.com
Ivan Fernandez Calvo commented on Bug JENKINS-59097
 
Re: SAML Plugin ADFS - Not sending Name field in request - Could not construct the directory structure for SP metadata

send the NameIDPolicy is optional

http://docs.oasis-open.org/security/saml/v2.0/saml-core-2.0-os.pdf

<NameIDPolicy> [Optional]
Specifies constraints on the name identifier to be used to represent the requested subject. If omitted,
then any type of identifier supported by the identity provider for the requested subject can be used,
constrained by any relevant deployment-specific policies, with respect to privacy, for example.

jbasharat@imolainformatica.it (JIRA)

unread,
Aug 27, 2019, 8:37:02 AM8/27/19
to jenkinsc...@googlegroups.com

Thanks for the reply, but how can I set the NameIDPolicy in the saml-plugin configuration?

kuisathaverat@gmail.com (JIRA)

unread,
Aug 28, 2019, 7:01:06 AM8/28/19
to jenkinsc...@googlegroups.com

SAML plugin does not send this setting, you can set the NameIDPolicy when you set the service provider (SP) settings in the Identity provider (IdP) configuration. this Jira is not a support site, please read How to report an issue and use the google groups get help

kuisathaverat@gmail.com (JIRA)

unread,
Aug 29, 2019, 2:21:02 PM8/29/19
to jenkinsc...@googlegroups.com

kuisathaverat@gmail.com (JIRA)

unread,
Aug 29, 2019, 2:21:02 PM8/29/19
to jenkinsc...@googlegroups.com

kuisathaverat@gmail.com (JIRA)

unread,
Aug 29, 2019, 2:21:03 PM8/29/19
to jenkinsc...@googlegroups.com

kuisathaverat@gmail.com (JIRA)

unread,
Aug 29, 2019, 2:21:03 PM8/29/19
to jenkinsc...@googlegroups.com

kuisathaverat@gmail.com (JIRA)

unread,
Aug 29, 2019, 2:21:03 PM8/29/19
to jenkinsc...@googlegroups.com
Status: Open In Progress

kuisathaverat@gmail.com (JIRA)

unread,
Aug 29, 2019, 2:22:01 PM8/29/19
to jenkinsc...@googlegroups.com

kuisathaverat@gmail.com (JIRA)

unread,
Aug 29, 2019, 2:26:01 PM8/29/19
to jenkinsc...@googlegroups.com

kuisathaverat@gmail.com (JIRA)

unread,
Sep 22, 2019, 7:18:03 AM9/22/19
to jenkinsc...@googlegroups.com
Status: In Review Resolved
Resolution: Fixed
Released As: saml-1.1.3
This message was sent by Atlassian Jira (v7.13.6#713006-sha1:cc4451f)
Atlassian logo
Reply all
Reply to author
Forward
0 new messages