Hi, I am sorry for the trouble, but a good option would be go through the key generation again and check that you don't miss any of the following steps: 1) Regenerate the keys and certificate using OpenSSL. 2) Make sure that your code is using the keys from the correct location. 3) Upload the certificate file to Google Apps SSO admin console. You should get the message saying "A certificate file has been uploaded."
Let me know if you have questions about any of the above steps. If you get the same error, send me the commands used to generate the keys and certificate. Thanks, Megha On Dec 26, 12:46 am, vietnam <[EMAIL PROTECTED]> wrote: > Dear > Would you like give me certificate file ? > Thanks > > On Dec 24, 9:51 am, vietnam <[EMAIL PROTECTED]> wrote: > > > Dear Megha, > > I create public key from support google. This is link "http:// > > code.google.com/support/bin/answer.py?answer=71864" > > I do the same it. But it is the same error. > > Please help me! > > Merry Chirstmast to you. > > Thanks. > > > On Dec 22, 1:51 am, "Megha (Google)" <[EMAIL PROTECTED]> wrote: > > > > Hi, > > > > The error you got is because the public key in the certificate used by > > > Google did not match the private key with which the SAML response was > > > encoded. > > > > Regarding the questions asked while creating the certificate, it's > > > okay to leave them blank or enter any answers. > > > > Thanks, > > > Megha > > > > On Dec 20, 1:15 am, vietnam <[EMAIL PROTECTED]> wrote: > > > > > Hi Megha, > > > > This is error message : > > > > Google Apps - This service cannot be accessed because your login > > > > credentials could not be verified. Please log in and try again. > > > > Could you answer to me: > > > > when I create certificate file,I need input full information (ex: > > > > Country Name...) and these information need correct , did not you? > > > > Thanks, > > > > -- Nhan > > > > My system used drupal > > > > This is xml I use SAMLTestTool > > > > <?xml version="1.0"?> > > > > <samlp:Response xmlns="urn:oasis:names:tc:SAML:2.0:assertion" > > > > xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" > > > > xmlns:xenc="http://www.w3.org/2001/04/xmlenc#" > > > > ID="mbhmlbhkklkiklfnoacebofmlidbieaffhbaiild" > > > > IssueInstant="2007-12-18T02:09:05Z" Version="2.0" > > > > Destination="https://www.google.com/a/platinumlounge.com/acs" > > > > InResponseTo="gniekjnpdjjmdbebeaihjfalkofnkjpbgifbbcbf"> > > > > <Signature xmlns="http://www.w3.org/2000/09/xmldsig#"> > > > > <SignedInfo> > > > > <CanonicalizationMethod Algorithm="http://www.w3.org/TR/ > > > > 2001/REC-xml-c14n-20010315#WithComments"/> > > > > <SignatureMethod Algorithm="http://www.w3.org/2000/09/ > > > > xmldsig#dsa-sha1"/> > > > > <Reference URI=""> > > > > <Transforms> > > > > <Transform Algorithm="http://www.w3.org/2000/09/ > > > > xmldsig#enveloped-signature"/> > > > > </Transforms> > > > > <DigestMethod Algorithm="http://www.w3.org/2000/09/ > > > > xmldsig#sha1"/> > > > > <DigestValue>HH0uuZYE+9/lQNj4fiEgZbVBDHA=</ > > > > DigestValue> > > > > </Reference> > > > > </SignedInfo> > > > > <SignatureValue>H8O8eocLxwHR > > > > +Ce5cZLDkhEzSk1j2y5bAA9fWhU8A6NWGLameELh5w==</SignatureValue> > > > > <KeyInfo> > > > > <KeyValue> > > > > <DSAKeyValue> > > > > <P> > > > > uwYBQeSe7hcGeFUi2esBPuEqjjeJN8fwiEEP2q2FzCChHyKl8GssKfXwGmcX+vzN > > > > 9xs8zUXjHYvBh3thNaLlbi7cHMDpMQSLhlHPr9plcXac2ZTvtsPWZh1ojfjgv8Z2 > > > > NYVhJq5CtlV6NFRLyklPOGK1tni8S1C0TeziaxfH6e0= > > > > </P> > > > > <Q> > > > > nJurShli3r6RPK/HNO4PVDaYV9E= > > > > </Q> > > > > <G> > > > > XxYDHkaEBHmNN1QdL3AJRAEBxRC9Mo0n/NYJ+wi5b4whAkQ/YLDIwPIw4zPs7qwa > > > > HrCG1wKyXQIh2H3uK7FppBitcnEfUb2dK4HoY8DqZLU1yvCuwgL2/mT3WTGuANp9 > > > > 9eEPrB9ZuVhQXUaoLePIgFJ1pfmoGm/piFQos9zIhoI= > > > > </G> > > > > <Y> > > > > Xq53Gypr4CvAP8cx/pTbqRToa21U8XvP/2KT3NUbtYkx4Xhp+0tP1oypkfFLIBlt > > > > KpfBUssYZQoBTbjCLiJbEZs2QCUzmUPZkgWv29hNkA3Fr4AA2usuhDXqeAIsBxXJ > > > > kGcWaIS3tdo13FDIcRK/ulUgMw84mmNn1VcTf4L9uyA= > > > > </Y> > > > > </DSAKeyValue> > > > > </KeyValue> > > > > </KeyInfo> > > > > </Signature> > > > > <samlp:Status> > > > > <samlp:StatusCode > > > > Value="urn:oasis:names:tc:SAML:2.0:status:Success"/ > > > > > </samlp:Status> > > > > <Assertion xmlns="urn:oasis:names:tc:SAML:2.0:assertion" > > > > ID="efloabmobpdcnipibdjjhkombpmjihnmnjlokhnm" > > > > IssueInstant="2007-12-18T02:09:05Z" Version="2.0"> > > > > <Issuer>platinumlounge.com</Issuer> > > > > <Subject> > > > > <NameID > > > > Format="urn:oasis:names:tc:SAML:2.0:nameid- > > > > format:emailAddress"> > > > > RICH > > > > </NameID> > > > > <SubjectConfirmation > > > > Method="urn:oasis:names:tc:SAML:2.0:cm:bearer"/ > > > > > </Subject> > > > > <Conditions NotBefore="2007-12-18T02:04:05Z" > > > > NotOnOrAfter="2007-12-18T02:19:05Z"> > > > > </Conditions> > > > > <AuthnStatement AuthnInstant="2007-12-18T02:09:05Z"> > > > > <AuthnContext> > > > > <AuthnContextClassRef> > > > > > > > > urn:oasis:names:tc:SAML:2.0:ac:classes:Password > > > > </AuthnContextClassRef> > > > > </AuthnContext> > > > > </AuthnStatement> > > > > </Assertion> > > > > </samlp:Response> > > > > > On Dec 20, 7:31 am, "Megha (Google)" <[EMAIL PROTECTED]> wrote: > > > > > > Hi, > > > > > > Could you please give me more information on the error that you are > > > > > receiving? > > > > > > Thanks, > > > > > Megha > > > > > > On Dec 18, 9:38 pm, vietnam <[EMAIL PROTECTED]> wrote: > > > > > > > Dear All, > > > > > > I have the same error, but i don't know. --~--~---------~--~----~------------~-------~--~----~ You received this message because you are subscribed to the Google Groups "Google Apps APIs" group. To post to this group, send email to [email protected] To unsubscribe from this group, send email to [EMAIL PROTECTED] For more options, visit this group at http://groups.google.com/group/google-apps-apis?hl=en -~----------~----~----~----~------~----~------~--~---
