I removed some identifying information and some long STRING for tokens and such to make it more readable and also to remove any information since I am posting on a public page
RelayState: SITE/saml_login/
SAMLResponse: VERY LONG String
Origin: SIBH SERVER URL
Upgrade-Insecure-Requests: 1
Content-Type: application/x-www-form-urlencoded
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.92 Safari/537.36
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8
Accept-Encoding: gzip, deflate, br
Accept-Language: en-US,en;q=0.9,he;q=0.8
Cookie: NO_CACHE=1; nmstat=1522956725289; _ceir=1; cuwl2famethod="DUO"; hubspotutk=9cd91e32f1db598806c2a297b7ba95fe; _ceg.s=pd6266; _ceg.u=pd6266; _ga=GA1.2.1183118287.1536335791; __hssrc=1; has_js=1; visitor_id95472=89955514; visitor_id95472-hash=7e122fbe08ec35c961be42e455d86bf082b4f30a55dcb92e4f49226360721f8fa6e722c67d380ca6e4b141c2e94087d496d63fda; optimizelyEndUserId=oeu1537380348603r0.2183248286316295; optimizelySegments=%7B%22757067938%22%3A%22direct%22%2C%22778703350%22%3A%22false%22%2C%22781081607%22%3A%22gc%22%2C%22949601412%22%3A%22none%22%7D; optimizelyBuckets=%7B%7D; mp_fe42a3507c097e9a9d1e9f881d833cfb_mixpanel=%7B%22distinct_id%22%3A%20%22165f302760bf68-0acd7e899bdee3-1130685d-13c680-165f302760cbc0%22%2C%22%24initial_referrer%22%3A%20%22%24direct%22%2C%22%24initial_referring_domain%22%3A%20%22%24direct%22%7D; cuwltgttime="1537420098"; SESS1a31273c442c48fb2b8785303d79f5c6=HbH2T0Uu2qe-31xdDhIiAgnKbhDZ00yCE-rD9qongdI; SSESS1a31273c442c48fb2b8785303d79f5c6=b4aS-thryRTQMfnSkXCvIhcWOMEk4V0eQ_35v8uebEQ; __hstc=161696355.9cd91e32f1db598806c2a297b7ba95fe.1533738603244.1537396451310.1537402672461.31; __hssc=161696355.4.1537402672461; SimpleSAMLSessionID=d9992e9693bd7653739bb2a0a2672b05; SimpleSAMLAuthToken=_bfde9b8f2ce8ddc698a8f36ddbf6d0a647aa7ed3ff
HTTP/1.1 303 See Other
Age: 0
Cache-Control: no-cache, no-store, must-revalidate
Content-Type: text/html; charset=UTF-8
Date: Thu, 20 Sep 2018 00:23:25 GMT
Pragma: no-cache
Server: nginx
Set-Cookie: NO_CACHE=1
Set-Cookie: NO_CACHE=1
Set-Cookie: SimpleSAMLAuthToken=_SOMESTRING; path=/; HttpOnly
Via: 1.1 varnish (Varnish/5.2)
X-AH-Environment: test
X-Cache: MISS
X-Request-ID: v-638f3e26-bc6b-11e8-b445-22000ab98c38
X-Varnish: 119027767
Content-Length: 5589
Connection: keep-alive
Upgrade-Insecure-Requests: 1
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.92 Safari/537.36
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8
Accept-Encoding: gzip, deflate, br
Accept-Language: en-US,en;q=0.9,he;q=0.8
Cookie: simplesamlphp_auth_returnto=
https://SITEURL/; nmstat=1522956725289; _ceir=1; cuwl2famethod="DUO"; hubspotutk=9cd91e32f1db598806c2a297b7ba95fe; _ceg.s=pd6266; _ceg.u=pd6266; _ga=GA1.2.1183118287.1536335791; __hssrc=1; has_js=1; visitor_id95472=89955514; visitor_id95472-hash=7e122fbe08ec35c961be42e455d86bf082b4f30a55dcb92e4f49226360721f8fa6e722c67d380ca6e4b141c2e94087d496d63fda; optimizelyEndUserId=oeu1537380348603r0.2183248286316295; optimizelySegments=%7B%22757067938%22%3A%22direct%22%2C%22778703350%22%3A%22false%22%2C%22781081607%22%3A%22gc%22%2C%22949601412%22%3A%22none%22%7D; optimizelyBuckets=%7B%7D; mp_fe42a3507c097e9a9d1e9f881d833cfb_mixpanel=%7B%22distinct_id%22%3A%20%22165f302760bf68-0acd7e899bdee3-1130685d-13c680-165f302760cbc0%22%2C%22%24initial_referrer%22%3A%20%22%24direct%22%2C%22%24initial_referring_domain%22%3A%20%22%24direct%22%7D; cuwltgttime="1537420098"; SESS1a31273c442c48fb2b8785303d79f5c6=HbH2T0Uu2qe-31xdDhIiAgnKbhDZ00yCE-rD9qongdI; SSESS1a31273c442c48fb2b8785303d79f5c6=b4aS-thryRTQMfnSkXCvIhcWOMEk4V0eQ_35v8uebEQ; __hstc=161696355.9cd91e32f1db598806c2a297b7ba95fe.1533738603244.1537396451310.1537402672461.31; __hssc=161696355.4.1537402672461; SimpleSAMLSessionID=d9992e9693bd7653739bb2a0a2672b05; SimpleSAMLAuthToken=Same _SOMESTRING as the auth token above
HTTP/1.1 302 Found
Age: 0
Cache-Control: no-cache, must-revalidate
Content-Type: text/html; charset=UTF-8
Date: Thu, 20 Sep 2018 00:23:25 GMT
Expires: Sun, 19 Nov 1978 05:00:00 GMT
Pragma: no-cache
Server: nginx
Via: 1.1 varnish (Varnish/5.2)
X-AH-Environment: test
X-Cache: MISS
X-Content-Type-Options: nosniff
X-Drupal-Cache: MISS
X-Request-ID: v-639b7d58-bc6b-11e8-8fbf-22000ab98c38
X-Varnish: 119115409
Content-Length: 6795
Connection: keep-alive
GET
https://SHIB URL/idp/profile/SAML2/Redirect/SSO?SAMLRequest=STRING&RelayState=https%3A%2F%2F SITE URL %2Fsaml_login%2F
Upgrade-Insecure-Requests: 1
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_12_6) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/69.0.3497.92 Safari/537.36
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8
Referer:
https://SHIB SERVER URL/idp/profile/SAML2/Redirect/SSO?SAMLRequest=STRING&RelayState=https%3A%2F%2F SITE URL%2Fsaml_login%2F
Accept-Encoding: gzip, deflate, br
Accept-Language: en-US,en;q=0.9,he;q=0.8
Cookie: JSESSIONID=; shib_idp_session=STRING%; cuwl2famethod="DUO"; hubspotutk=9cd91e32f1db598806c2a297b7ba95fe; _ga=GA1.2.1183118287.1536335791; __hssrc=1; AWSELB=E3B1DB3D140C782A1E4558531E90AA2168374C91CDD0185A2B1302C2DB1CA017CE0BFC6900ECBEAC8897CE1DBE9F79AAC597039E40A48A7433019626561231BB0F810ED5EC; optimizelyEndUserId=oeu1537380348603r0.2183248286316295; optimizelySegments=%7B%22757067938%22%3A%22direct%22%2C%22778703350%22%3A%22false%22%2C%22781081607%22%3A%22gc%22%2C%22949601412%22%3A%22none%22%7D; optimizelyBuckets=%7B%7D; mp_fe42a3507c097e9a9d1e9f881d833cfb_mixpanel=%7B%22distinct_id%22%3A%20%22165f302760bf68-0acd7e899bdee3-1130685d-13c680-165f302760cbc0%22%2C%22%24initial_referrer%22%3A%20%22%24direct%22%2C%22%24initial_referring_domain%22%3A%20%22%24direct%22%7D; CUWALastWeblogin=1; cuwltgttime="1537420098"; cuweblogin2=WAAAFDMAAQ3HDOA0Jg+z/QZbM48+VyWg==; __hstc=161696355.9cd91e32f1db598806c2a297b7ba95fe.1533738603244.1537396451310.1537402672461.31; __hssc=161696355.4.1537402672461
HTTP/1.1 200 200
Cache-Control: no-cache, no-store
Content-Type: text/html;charset=UTF-8
Date: Thu, 20 Sep 2018 00:23:26 GMT
Pragma: no-cache
Server: Apache
Set-Cookie: shib_idp_session_ss=STRING%3D;path=/idp;HttpOnly
Strict-Transport-Security: max-age=31536000;includeSubDomains
transfer-encoding: chunked
Connection: keep-alive