[prev in list] [next in list] [prev in thread] [next in thread] 

List:       wsf-c-dev
Subject:    Re: [Dev] [IS] [DEV] Getting "localhost" as the saml2:Issuer in SAML authentication response
From:       Nadeesha Meegoda <nadeesham () wso2 ! com>
Date:       2015-09-30 9:46:00
Message-ID: CADE-MxHN_agsjS1pBDgh8OLT21+U6uiXidxVh4sFK6EcgsPvUA () mail ! gmail ! com
[Download RAW message or body]

[Attachment #2 (multipart/alternative)]


Got this working correct when I changed the Identity Provider Entity Id: in
SAML2 WEB SSO configuration in the Resident Identity Provider

On Wed, Sep 30, 2015 at 12:08 PM, Nadeesha Meegoda <nadeesham@wso2.com>
wrote:

> Hi Ishara,
>
> These are the values.
>
> <HostName>mgt.is.wso2.com</HostName>
>
> <MgtHostName>mgt.is.wso2.com</MgtHostName>
>
> I changed the Resident Identity Provider  "mgt.is.wso2.com" but still
> getting localhost in response
>
>
> On Wed, Sep 30, 2015 at 11:58 AM, Ishara Karunarathna <isharak@wso2.com>
> wrote:
>
>> Hi Nadeesha,
>>
>> In you cluster nodes what are the MgtHostName and HostName values ?
>>
>>
>>
>> On Wed, Sep 30, 2015 at 11:53 AM, Rajith Vitharana <rajithv@wso2.com>
>> wrote:
>>
>>> Hi Nadeesha,
>>>
>>> As I remember you need to change the issuer in ResidentIDP config for
>>> this to work.
>>>
>>> Thanks,
>>>
>>> On Wed, Sep 30, 2015 at 11:48 AM, Nadeesha Meegoda <nadeesham@wso2.com>
>>> wrote:
>>>
>>>> Hi IS team,
>>>>
>>>> I have configured a SAML SSO service provider (travelocity.com) in
>>>> tenant mode (ymc.com). My IS is running in cluster environment it's
>>>> https://mgt.is.wso2.com. When I was signing in to travelocity.com in
>>>> the SAML AuthnRequest the samlp:issuer is as follows :
>>>>
>>>> <samlp:Issuer xmlns:samlp="urn:oasis:names:tc:SAML:2.0:assertion">
>>>> travelocity.com@ymc.com</samlp:Issuer>
>>>>
>>>> However in the SAML Response to the authentication request the
>>>> saml2:issuer is as follows:
>>>>
>>>> <saml2:Issuer Format="urn:oasis:names:tc:SAML:2.0:nameid-format:entity"
>>>>                   xmlns:saml2="urn:oasis:names:tc:SAML:2.0:assertion"
>>>>                   >localhost</saml2:Issuer>
>>>>
>>>> May I know why the saml2:Issuer is localhost here? Do I need to do more
>>>> configurations to get it right? Can anyone explain please?
>>>>
>>>> I have attached the full authentication request and response with the
>>>> mail.
>>>>
>>>>
>>>> Thanks
>>>>
>>>> --
>>>> *Nadeesha Meegoda*
>>>> Software Engineer - QA
>>>> WSO2 Inc.; http://wso2.com
>>>> lean.enterprise.middleware
>>>> email : nadeesham@wso2.com
>>>> mobile: +94783639540
>>>> <%2B94%2077%202273555>
>>>>
>>>> _______________________________________________
>>>> Dev mailing list
>>>> Dev@wso2.org
>>>> http://wso2.org/cgi-bin/mailman/listinfo/dev
>>>>
>>>>
>>>
>>>
>>> --
>>> Rajith Vitharana
>>>
>>> Software Engineer,
>>> WSO2 Inc. : wso2.com
>>> Mobile : +94715883223
>>> Blog : http://lankavitharana.blogspot.com/
>>>
>>> _______________________________________________
>>> Dev mailing list
>>> Dev@wso2.org
>>> http://wso2.org/cgi-bin/mailman/listinfo/dev
>>>
>>>
>>
>>
>> --
>> Ishara Karunarathna
>> Senior Software Engineer
>> WSO2 Inc. - lean . enterprise . middleware |  wso2.com
>>
>> email: isharak@wso2.com,   blog: isharaaruna.blogspot.com,   mobile:
>> +94717996791
>>
>
>
>
> --
> *Nadeesha Meegoda*
> Software Engineer - QA
> WSO2 Inc.; http://wso2.com
> lean.enterprise.middleware
> email : nadeesham@wso2.com
> mobile: +94783639540
> <%2B94%2077%202273555>
>



-- 
*Nadeesha Meegoda*
Software Engineer - QA
WSO2 Inc.; http://wso2.com
lean.enterprise.middleware
email : nadeesham@wso2.com
mobile: +94783639540
<%2B94%2077%202273555>

[Attachment #5 (text/html)]

<div dir="ltr">Got this working correct when I changed the Identity Provider Entity \
Id: in SAML2 WEB SSO configuration in the Resident Identity Provider<br></div><div \
class="gmail_extra"><br><div class="gmail_quote">On Wed, Sep 30, 2015 at 12:08 PM, \
Nadeesha Meegoda <span dir="ltr">&lt;<a href="mailto:nadeesham@wso2.com" \
target="_blank">nadeesham@wso2.com</a>&gt;</span> wrote:<br><blockquote \
class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc \
solid;padding-left:1ex"><div dir="ltr"><div>Hi Ishara,<br><br>These are the values. \
<br><br>&lt;HostName&gt;<a href="http://mgt.is.wso2.com" \
target="_blank">mgt.is.wso2.com</a>&lt;/HostName&gt;<br><br>&lt;MgtHostName&gt;<a \
href="http://mgt.is.wso2.com" \
target="_blank">mgt.is.wso2.com</a>&lt;/MgtHostName&gt;<br><br></div>I changed the \
Resident Identity Provider   &quot;<a href="http://mgt.is.wso2.com" \
target="_blank">mgt.is.wso2.com</a>&quot; but still getting localhost in \
response<br><div><br></div></div><div class="HOEnZb"><div class="h5"><div \
class="gmail_extra"><br><div class="gmail_quote">On Wed, Sep 30, 2015 at 11:58 AM, \
Ishara Karunarathna <span dir="ltr">&lt;<a href="mailto:isharak@wso2.com" \
target="_blank">isharak@wso2.com</a>&gt;</span> wrote:<br><blockquote \
class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc \
solid;padding-left:1ex"><div dir="ltr"><div><div>Hi Nadeesha,<br><br></div>In you \
cluster nodes what are the MgtHostName and HostName values \
?<br><br></div><br></div><div class="gmail_extra"><div><div><br><div \
class="gmail_quote">On Wed, Sep 30, 2015 at 11:53 AM, Rajith Vitharana <span \
dir="ltr">&lt;<a href="mailto:rajithv@wso2.com" \
target="_blank">rajithv@wso2.com</a>&gt;</span> wrote:<br><blockquote \
class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc \
solid;padding-left:1ex"><div dir="ltr">Hi Nadeesha,<div><br></div><div>As I remember \
you need to change the issuer in ResidentIDP config for this to \
work.</div><div><br></div><div>Thanks,</div></div><div class="gmail_extra"><br><div \
class="gmail_quote"><div><div>On Wed, Sep 30, 2015 at 11:48 AM, Nadeesha Meegoda \
<span dir="ltr">&lt;<a href="mailto:nadeesham@wso2.com" \
target="_blank">nadeesham@wso2.com</a>&gt;</span> wrote:<br></div></div><blockquote \
class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc \
solid;padding-left:1ex"><div><div><div dir="ltr"><div><div><div><div><div>Hi IS \
team,<br><br></div>I have configured a SAML SSO service provider (<a \
href="http://travelocity.com" target="_blank">travelocity.com</a>) in tenant mode (<a \
href="http://ymc.com" target="_blank">ymc.com</a>). My IS is running in cluster \
environment it&#39;s <a href="https://mgt.is.wso2.com" \
target="_blank">https://mgt.is.wso2.com</a>. When I was signing in to <a \
href="http://travelocity.com" target="_blank">travelocity.com</a> in the SAML \
AuthnRequest the samlp:issuer is as follows :<br><br>&lt;samlp:Issuer \
xmlns:samlp=&quot;urn:oasis:names:tc:SAML:2.0:assertion&quot;&gt;<a \
href="mailto:travelocity.com@ymc.com" \
target="_blank">travelocity.com@ymc.com</a>&lt;/samlp:Issuer&gt;<br><br></div>However \
in the SAML Response to the authentication request the saml2:issuer is as \
follows:<br><br>&lt;saml2:Issuer \
Format=&quot;urn:oasis:names:tc:SAML:2.0:nameid-format:entity&quot;<br>               \
xmlns:saml2=&quot;urn:oasis:names:tc:SAML:2.0:assertion&quot;<br>                     \
&gt;localhost&lt;/saml2:Issuer&gt;<br><br></div>May I know why the saml2:Issuer is \
localhost here? Do I need to do more configurations to get it right? Can anyone \
explain please?<br><br></div>I have attached the full authentication request and \
response with the mail.<br><br><br></div>Thanks<span><font \
color="#888888"><br><div><div><div><div><div><div><div><br>-- <br><div><div \
dir="ltr"><div><div dir="ltr"><span style="color:rgb(68,68,68)"><span \
style="background-color:rgb(255,255,255)"><font size="2"><span><span><span \
style="font-family:arial,sans-serif"><b>Nadeesha Meegoda</b></span><span></span><br \
style="font-family:arial,sans-serif"></span></span></font></span></span><div><span><font \
color="#888888"><font size="1"><span><font color="#888888"><span \
style="color:rgb(68,68,68)"><span style="background-color:rgb(255,255,255)"><font \
size="2">

<span style="font-family:arial,sans-serif">Software Engineer</span> - \
QA<span></span><br style="font-family:arial,sans-serif">

<span style="font-family:arial,sans-serif">WSO2 Inc.;  </span><a \
href="http://wso2.com/" style="font-family:arial,sans-serif" \
target="_blank">http://wso2.com</a><br style="font-family:arial,sans-serif">

<span style="font-family:arial,sans-serif">lean.enterprise.middleware</span><br>email \
: <a href="mailto:nadeesham@wso2.com" target="_blank">nadeesham@wso2.com</a><br \
style="font-family:arial,sans-serif">

<span style="font-family:arial,sans-serif">mobile:  </span></font></span></span><font \
color="#999999"><a href="tel:%2B94%2077%202273555" value="+94772273555" \
target="_blank"><span style="color:rgb(68,68,68)"><span \
style="background-color:rgb(255,255,255)"><font \
size="2">+94783639540</font><span></span></span></span><br></a></font></font></span></font></font></span></div></div></div></div></div>
 </div></div></div></div></div></div></div></font></span></div>
<br></div></div>_______________________________________________<br>
Dev mailing list<br>
<a href="mailto:Dev@wso2.org" target="_blank">Dev@wso2.org</a><br>
<a href="http://wso2.org/cgi-bin/mailman/listinfo/dev" rel="noreferrer" \
target="_blank">http://wso2.org/cgi-bin/mailman/listinfo/dev</a><br> \
<br></blockquote></div><span><font color="#888888"><br><br \
clear="all"><div><br></div>-- <br><div><div dir="ltr"><div \
style="color:rgb(136,136,136)"><span style="color:rgb(34,34,34)">Rajith \
Vitharana</span><br style="color:rgb(34,34,34)"><br style="color:rgb(34,34,34)"><span \
style="color:rgb(34,34,34)">Software Engineer,</span><br \
style="color:rgb(34,34,34)"><span style="color:rgb(34,34,34)">WSO2 Inc. :  </span><a \
href="http://wso2.com/" target="_blank">wso2.com</a><br \
style="color:rgb(34,34,34)"><span style="color:rgb(34,34,34)">Mobile :  </span><a \
title="Call Now">+94715883223</a><br style="color:rgb(34,34,34)"><span \
style="color:rgb(34,34,34)">Blog :  </span><a \
href="http://lankavitharana.blogspot.com/" \
target="_blank">http://lankavitharana.blogspot.com/</a><br></div></div></div> \
</font></span></div> <br>_______________________________________________<br>
Dev mailing list<br>
<a href="mailto:Dev@wso2.org" target="_blank">Dev@wso2.org</a><br>
<a href="http://wso2.org/cgi-bin/mailman/listinfo/dev" rel="noreferrer" \
target="_blank">http://wso2.org/cgi-bin/mailman/listinfo/dev</a><br> \
<br></blockquote></div><br><br clear="all"><br>-- <br></div></div><div><div \
dir="ltr"><div><div dir="ltr">Ishara Karunarathna<br>Senior Software Engineer<br>WSO2 \
Inc. - lean . enterprise . middleware |   <a href="http://wso2.com" \
target="_blank">wso2.com</a><br><br>email: <a href="mailto:isharak@wso2.com" \
target="_blank">isharak@wso2.com</a>,     blog: <a \
href="http://isharaaruna.blogspot.com" target="_blank">isharaaruna.blogspot.com</a>,  \
mobile: <a href="tel:%2B94717996791" value="+94717996791" \
target="_blank">+94717996791</a><br></div></div></div></div> </div>
</blockquote></div><br><br clear="all"><br>-- <br><div><div dir="ltr"><div><div \
dir="ltr"><span style="color:rgb(68,68,68)"><span \
style="background-color:rgb(255,255,255)"><font size="2"><span><span><span \
style="font-family:arial,sans-serif"><b>Nadeesha Meegoda</b></span><span></span><br \
style="font-family:arial,sans-serif"></span></span></font></span></span><div><span><font \
color="#888888"><font size="1"><span><font color="#888888"><span \
style="color:rgb(68,68,68)"><span style="background-color:rgb(255,255,255)"><font \
size="2">

<span style="font-family:arial,sans-serif">Software Engineer</span> - \
QA<span></span><br style="font-family:arial,sans-serif">

<span style="font-family:arial,sans-serif">WSO2 Inc.;  </span><a \
href="http://wso2.com/" style="font-family:arial,sans-serif" \
target="_blank">http://wso2.com</a><br style="font-family:arial,sans-serif">

<span style="font-family:arial,sans-serif">lean.enterprise.middleware</span><br>email \
: <a href="mailto:nadeesham@wso2.com" target="_blank">nadeesham@wso2.com</a><br \
style="font-family:arial,sans-serif">

<span style="font-family:arial,sans-serif">mobile:  </span></font></span></span><font \
color="#999999"><a href="tel:%2B94%2077%202273555" value="+94772273555" \
target="_blank"><span style="color:rgb(68,68,68)"><span \
style="background-color:rgb(255,255,255)"><font \
size="2">+94783639540</font><span></span></span></span><br></a></font></font></span></font></font></span></div></div></div></div></div>
 </div>
</div></div></blockquote></div><br><br clear="all"><br>-- <br><div \
class="gmail_signature"><div dir="ltr"><div><div dir="ltr"><span \
style="color:rgb(68,68,68)"><span style="background-color:rgb(255,255,255)"><font \
size="2"><span><span><span style="font-family:arial,sans-serif"><b>Nadeesha \
Meegoda</b></span><span></span><br \
style="font-family:arial,sans-serif"></span></span></font></span></span><div><span><font \
color="#888888"><font size="1"><span><font color="#888888"><span \
style="color:rgb(68,68,68)"><span style="background-color:rgb(255,255,255)"><font \
size="2">

<span style="font-family:arial,sans-serif">Software Engineer</span> - \
QA<span></span><br style="font-family:arial,sans-serif">

<span style="font-family:arial,sans-serif">WSO2 Inc.;  </span><a \
href="http://wso2.com/" style="font-family:arial,sans-serif" \
target="_blank">http://wso2.com</a><br style="font-family:arial,sans-serif">

<span style="font-family:arial,sans-serif">lean.enterprise.middleware</span><br>email \
: <a href="mailto:nadeesham@wso2.com" target="_blank">nadeesham@wso2.com</a><br \
style="font-family:arial,sans-serif">

<span style="font-family:arial,sans-serif">mobile:  </span></font></span></span><font \
color="#999999"><a href="tel:%2B94%2077%202273555" value="+94772273555" \
target="_blank"><span style="color:rgb(68,68,68)"><span \
style="background-color:rgb(255,255,255)"><font \
size="2">+94783639540</font><span></span></span></span><br></a></font></font></span></font></font></span></div></div></div></div></div>
 </div>



_______________________________________________
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic