* o haya [2021-10-10 10:26]:
> I worked with SimpleSAMLphp for a very short time, awhile ago, and I
> vaguely recall that at least PART of the ACS value is from the actual
> hostname where SimpleSAMLphp is running.
See 'baseurlpath' in SSP's config.php and the comments above.
-peter
[1] https://simplesamlphp.org/docs/stable/simplesamlphp-sp#section_1_1
SimpleSAML_Error_Error: UNHANDLEDEXCEPTION
Backtrace: 1 www/_include.php:45 (SimpleSAML_exception_handler) 0 [builtin] (N/A) Caused by: Exception: Unable to validate Signature Backtrace: 6 vendor/simplesamlphp/saml2/src/SAML2/Utils.php:179 (SAML2\Utils::validateSignature) 5 vendor/simplesamlphp/saml2/src/SAML2/Assertion.php:651 (SAML2\Assertion::validate) 4 modules/saml/lib/Message.php:216 (sspmod_saml_Message::checkSign) 3 modules/saml/lib/Message.php:613 (sspmod_saml_Message::processAssertion) 2 modules/saml/lib/Message.php:578 (sspmod_saml_Message::processResponse) 1 modules/saml/www/sp/saml2-acs.php:129 (require) 0 www/module.php:135 (N/A)Any changes to the authsources.php will not have any effect until you exchange metadata with your IDP again...
I really wonder why you're making this so hard for yourself with compiling Apache, running on a non-default user, installing in non-default locations, non-default HTTPS-port when you already said yourself you don't have much experience...
- Tim
--
This is a mailing list for users of SimpleSAMLphp, not a support service. If you are willing to buy commercial support, please take a look here:
https://simplesamlphp.org/support
Before sending your question, make sure it is related to SimpleSAMLphp, and not your web server's configuration or any other third-party software. This mailing list cannot help with software that uses SimpleSAMLphp, only regarding SimpleSAMLphp itself.
Make sure to read the documentation:
https://simplesamlphp.org/docs/stable/
If you have an issue with SimpleSAMLphp that you cannot resolve and reading the documentation doesn't help, you are more than welcome to ask here for help. Subscribe to the list and send an email with your question. However, you will be expected to comply with some minimum, common sense standards in your questions. Please read this carefully:
http://catb.org/~esr/faqs/smart-questions.html
---
You received this message because you are subscribed to the Google Groups "SimpleSAMLphp" group.
To unsubscribe from this group and stop receiving emails from it, send an email to simplesamlph...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/simplesamlphp/ef0f2207-32f1-4149-bca9-0c8c9d97bd47n%40googlegroups.com.
It's not logging because you're hitting a PHP fatal error which
is only logged on Apache-level..
You can probably find it back in /var/log/messages.
- Tim
--
This is a mailing list for users of SimpleSAMLphp, not a support service. If you are willing to buy commercial support, please take a look here:
https://simplesamlphp.org/support
Before sending your question, make sure it is related to SimpleSAMLphp, and not your web server's configuration or any other third-party software. This mailing list cannot help with software that uses SimpleSAMLphp, only regarding SimpleSAMLphp itself.
Make sure to read the documentation:
https://simplesamlphp.org/docs/stable/
If you have an issue with SimpleSAMLphp that you cannot resolve and reading the documentation doesn't help, you are more than welcome to ask here for help. Subscribe to the list and send an email with your question. However, you will be expected to comply with some minimum, common sense standards in your questions. Please read this carefully:
http://catb.org/~esr/faqs/smart-questions.html
---
You received this message because you are subscribed to the Google Groups "SimpleSAMLphp" group.
To unsubscribe from this group and stop receiving emails from it, send an email to simplesamlph...@googlegroups.com.
To view this discussion on the web visit https://groups.google.com/d/msgid/simplesamlphp/99de242f-11d7-44b0-881e-a274f3bd38can%40googlegroups.com.
Ah, yeah that should be fine to work around and test your
theory..
The thing that triggered me earlier was something you said about
changing the saml2-acs.php to saml1-acs.php and that made zero
sense to me..
- Tim
To view this discussion on the web visit https://groups.google.com/d/msgid/simplesamlphp/b8fe2c88-3c77-4862-93f8-0c315e3c178en%40googlegroups.com.