When i turn on the SAML2 i see these error in crt files and SSL handshake
exception when using the SP to test the SAML2 feature . What am i doing
wrong
Error: javax.net.ssl.SSLHandshakeException:
java.security.cert.CertificateException: No name matching
domaincas5.domain.edu found
c:\cas>keytool -printcert -v -file idp-signing.crt
Owner: CN=domaincas5.domain.edu
Issuer: CN=domaincas5.domain.edu
Serial number: d0dbfdcb095901a1f64cf467d9b6fc7a98283f4a
Valid from: Mon Oct 10 11:05:08 CDT 2016 until: Fri Oct 10 11:05:08 CDT 2036
Certificate fingerprints:
MD5: 56:F5:62:23:8B:39:DD:43:44:98:82:E4:BF:16:41:22
SHA1: 1E:9B:64:3E:0F:9E:FF:37:CB:B4:16:D6:CB:EC:52:B8:BC:3B:A8:28
SHA256:
34:E0:B4:8D:B8:89:72:80:FD:31:15:97:61:8B:25:B0:5D:CE:EC:A6:01:
0D:6E:36:19:D3:5F:EC:92:9D:C1:69
Signature algorithm name: SHA256withRSA
Version: 3
Extensions:
#1: ObjectId: 2.5.29.14 Criticality=false
SubjectKeyIdentifier [
KeyIdentifier [
0000: FC A3 DD 52 00 6E 31 90 39 BD ED 09 E2 53 D2 06 ...R.n1.9....S..
0010: 0A D3 7F 76 ...v
]
]
#2: ObjectId: 2.5.29.17 Criticality=false
Unparseable SubjectAlternativeName extension due to
java.io.IOException: URI name must include
scheme:domaincas5.domain.eduidp/metadata
0000: 30 2E 82 0F 75 61 62 63 61 73 35 2E 75 61 62 2E
0...domaincas5.domain.
0010: 65 64 75 86 1B 75 61 62 63 61 73 35 2E 75 61 62
edu..domaincas5.domain
0020: 2E 65 64 75 69 64 70 2F 6D 65 74 61 64 61 74 61 .eduidp/metadata
SAML2 Appliation properties
cas.authn.samlIdp.entityId=https://domaincas5.domain.edu:8443/cas/idp/metadata
cas.authn.samlIdp.hostName=domaincas5.domain.edu
cas.authn.samlIdp.scope=domain.edu
cas.authn.samlIdp.metadata.cacheExpirationMinutes=30
cas.authn.samlIdp.metadata.failFast=true
cas.authn.samlIdp.metadata.location=C:\\cas
cas.authn.samlIdp.metadata.privateKeyAlgName=RSA
cas.authn.samlIdp.metadata.requireValidMetadata=true
#cas.authn.samlIdp.metadata.basicAuthnUsername=
#cas.authn.samlIdp.metadata.basicAuthnPassword=
#cas.authn.samlIdp.metadata.supportedContentTypes=
cas.authn.samlIdp.logout.forceSignedLogoutRequests=true
cas.authn.samlIdp.logout.singleLogoutCallbacksDisabled=false
cas.authn.samlIdp.response.skewAllowance=0
cas.authn.samlIdp.response.signError=false
cas.authn.samlIdp.response.overrideSignatureCanonicalizationAlgorithm=
cas.authn.samlIdp.response.useAttributeFriendlyName=true
--
CAS gitter chatroom: https://gitter.im/apereo/cas
CAS mailing list guidelines: https://apereo.github.io/cas/Mailing-Lists.html
CAS documentation website: https://apereo.github.io/cas
CAS project website: https://github.com/apereo/cas
---
You received this message because you are subscribed to the Google Groups "CAS
Community" group.
To unsubscribe from this group and stop receiving emails from it, send an email
to [email protected].
To post to this group, send email to [email protected].
Visit this group at https://groups.google.com/a/apereo.org/group/cas-user/.
To view this discussion on the web visit
https://groups.google.com/a/apereo.org/d/msgid/cas-user/35106973-ef12-4e43-a756-f5d5835afadb%40apereo.org.
For more options, visit https://groups.google.com/a/apereo.org/d/optout.