Re: [Dev] [DEV][API-M] - SSO Cofiguration Documentation issue

2014-11-04 Thread Evanthika Amarasiri
Hi Dharshana,

When I removed the property, while trying to login from my tenant, it gave
me an error page and returned the following exception at Publisher console.

I was able to login from my tenants *only* when I used this parameter in
identity.xml. I'm using API-M 1.8.0 nightly pack with IS 5.0.0.

TID: [0] [AM] [2014-11-05 01:02:05,411] ERROR
{JAGGERY.jagg.jaggery_acs:jag} -  SAML response signature is verification
failed. {JAGGERY.jagg.jaggery_acs:jag}

Regards,

Evanthika

On Wed, Nov 5, 2014 at 9:43 AM, Darshana Gunawardana 
wrote:

> If it worked for APIM 1.7.0 and IS 5.0.0 with tenant users, APIM 1.8.0
> should also work same way..
>
> On Wed, Nov 5, 2014 at 9:00 AM, Yasassri Ratnayake 
> wrote:
>
>> Hi Rajakrishna,
>>
>> The above configuration indicates that the SAML2 SSO SAML Response must
>> be signed using the authenticated user's tenant keystore. Please refer to
>> the comments made in [1]
>>
>> [1] - https://wso2.org/jira/browse/STORE-454
>>
>> With Regards,
>>
>> On Tue, Nov 4, 2014 at 6:55 PM, Rajakrishna Reddy 
>> wrote:
>>
>>>  Yes it used to work with AM-1.7.0 and is 5.0.0 
>>>
>>> Why do we need that separate config element in identity. Xml now for
>>> AM-1.8.0!??
>>>
>>> Can anyone explains why??
>>>
>>> --
>>> Thanks & Regards,
>>> Rajakrishna Reddy
>>>
>>> --- Original Message ---
>>>
>>> From: "Nuwan Dias" 
>>> Sent: 29 October 2014 20:40
>>> To: "Yasassri Ratnayake" 
>>> Cc: "WSO2 Developers' List" 
>>> Subject: Re: [Dev] [DEV][API-M] - SSO Cofiguration Documentation issue
>>>
>>>  What if you define the SP as a 'SaaS Application', doesn't it work? It
>>> used to work with 1.7.0 and IS 5.0.0 AFAIR.
>>>
>>> On Wed, Oct 29, 2014 at 1:51 AM, Yasassri Ratnayake 
>>> wrote:
>>>
>>> Hi All,
>>>
>>>  When enabling SSO for Publisher and Store. A new config element should
>>> be added to identity.xml file in the IS Node in-order for tenant users to
>>> login, If the element is not included the following error will be shown in
>>> the API-M console.
>>>
>>>  ERROR - jaggery_acs:jag SAML response signature is verification failed.
>>>
>>>  This is reported at [1], please do the needful to fix this.
>>>
>>> [1] - https://wso2.org/jira/browse/DOCUMENTATION-1219
>>>
>>>  With Regards,
>>> --
>>> Yasassri Ratnayake
>>> Software Engineer - QA
>>> WSO2 Inc ; http://wso2.com
>>> lean.enterprise.middleware
>>> *Mobile : +94715933168 <%2B94715933168>*
>>> *Blog : http://yasassriratnayake.blogspot.com/
>>> <http://yasassriratnayake.blogspot.com/>*
>>>
>>>
>>>
>>>
>>>  --
>>> Nuwan Dias
>>>
>>>  Associate Tech Lead - WSO2, Inc. http://wso2.com
>>> email : nuw...@wso2.com
>>> Phone : +94 777 775 729
>>>
>>
>>
>>
>> --
>> Yasassri Ratnayake
>> Software Engineer - QA
>> WSO2 Inc ; http://wso2.com
>> lean.enterprise.middleware
>> *Mobile : +94715933168 <%2B94715933168>*
>> *Blog : http://yasassriratnayake.blogspot.com/
>> <http://yasassriratnayake.blogspot.com/>*
>>
>
>
>
> --
> Regards,
>
>
> *Darshana Gunawardana*Software Engineer
> WSO2 Inc.; http://wso2.com
>
> *E-mail: darsh...@wso2.com *
> *Mobile: +94718566859 <%2B94718566859>*Lean . Enterprise . Middleware
>
> ___
> Dev mailing list
> Dev@wso2.org
> http://wso2.org/cgi-bin/mailman/listinfo/dev
>
>
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


Re: [Dev] [DEV][API-M] - SSO Cofiguration Documentation issue

2014-11-04 Thread Darshana Gunawardana
If it worked for APIM 1.7.0 and IS 5.0.0 with tenant users, APIM 1.8.0
should also work same way..

On Wed, Nov 5, 2014 at 9:00 AM, Yasassri Ratnayake 
wrote:

> Hi Rajakrishna,
>
> The above configuration indicates that the SAML2 SSO SAML Response must be
> signed using the authenticated user's tenant keystore. Please refer to the
> comments made in [1]
>
> [1] - https://wso2.org/jira/browse/STORE-454
>
> With Regards,
>
> On Tue, Nov 4, 2014 at 6:55 PM, Rajakrishna Reddy 
> wrote:
>
>>  Yes it used to work with AM-1.7.0 and is 5.0.0 
>>
>> Why do we need that separate config element in identity. Xml now for
>> AM-1.8.0!??
>>
>> Can anyone explains why??
>>
>> --
>> Thanks & Regards,
>> Rajakrishna Reddy
>>
>> --- Original Message ---
>>
>> From: "Nuwan Dias" 
>> Sent: 29 October 2014 20:40
>> To: "Yasassri Ratnayake" 
>> Cc: "WSO2 Developers' List" 
>> Subject: Re: [Dev] [DEV][API-M] - SSO Cofiguration Documentation issue
>>
>>  What if you define the SP as a 'SaaS Application', doesn't it work? It
>> used to work with 1.7.0 and IS 5.0.0 AFAIR.
>>
>> On Wed, Oct 29, 2014 at 1:51 AM, Yasassri Ratnayake 
>> wrote:
>>
>> Hi All,
>>
>>  When enabling SSO for Publisher and Store. A new config element should
>> be added to identity.xml file in the IS Node in-order for tenant users to
>> login, If the element is not included the following error will be shown in
>> the API-M console.
>>
>>  ERROR - jaggery_acs:jag SAML response signature is verification failed.
>>
>>  This is reported at [1], please do the needful to fix this.
>>
>> [1] - https://wso2.org/jira/browse/DOCUMENTATION-1219
>>
>>  With Regards,
>> --
>> Yasassri Ratnayake
>> Software Engineer - QA
>> WSO2 Inc ; http://wso2.com
>> lean.enterprise.middleware
>> *Mobile : +94715933168 <%2B94715933168>*
>> *Blog : http://yasassriratnayake.blogspot.com/
>> <http://yasassriratnayake.blogspot.com/>*
>>
>>
>>
>>
>>  --
>> Nuwan Dias
>>
>>  Associate Tech Lead - WSO2, Inc. http://wso2.com
>> email : nuw...@wso2.com
>> Phone : +94 777 775 729
>>
>
>
>
> --
> Yasassri Ratnayake
> Software Engineer - QA
> WSO2 Inc ; http://wso2.com
> lean.enterprise.middleware
> *Mobile : +94715933168 <%2B94715933168>*
> *Blog : http://yasassriratnayake.blogspot.com/
> <http://yasassriratnayake.blogspot.com/>*
>



-- 
Regards,


*Darshana Gunawardana*Software Engineer
WSO2 Inc.; http://wso2.com

*E-mail: darsh...@wso2.com *
*Mobile: +94718566859*Lean . Enterprise . Middleware
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


Re: [Dev] [DEV][API-M] - SSO Cofiguration Documentation issue

2014-11-04 Thread Yasassri Ratnayake
Hi Rajakrishna,

The above configuration indicates that the SAML2 SSO SAML Response must be
signed using the authenticated user's tenant keystore. Please refer to the
comments made in [1]

[1] - https://wso2.org/jira/browse/STORE-454

With Regards,

On Tue, Nov 4, 2014 at 6:55 PM, Rajakrishna Reddy  wrote:

>  Yes it used to work with AM-1.7.0 and is 5.0.0 
>
> Why do we need that separate config element in identity. Xml now for
> AM-1.8.0!??
>
> Can anyone explains why??
>
> --
> Thanks & Regards,
> Rajakrishna Reddy
>
> --- Original Message ---
>
> From: "Nuwan Dias" 
> Sent: 29 October 2014 20:40
> To: "Yasassri Ratnayake" 
> Cc: "WSO2 Developers' List" 
> Subject: Re: [Dev] [DEV][API-M] - SSO Cofiguration Documentation issue
>
>  What if you define the SP as a 'SaaS Application', doesn't it work? It
> used to work with 1.7.0 and IS 5.0.0 AFAIR.
>
> On Wed, Oct 29, 2014 at 1:51 AM, Yasassri Ratnayake 
> wrote:
>
> Hi All,
>
>  When enabling SSO for Publisher and Store. A new config element should
> be added to identity.xml file in the IS Node in-order for tenant users to
> login, If the element is not included the following error will be shown in
> the API-M console.
>
>  ERROR - jaggery_acs:jag SAML response signature is verification failed.
>
>  This is reported at [1], please do the needful to fix this.
>
> [1] - https://wso2.org/jira/browse/DOCUMENTATION-1219
>
>  With Regards,
> --
> Yasassri Ratnayake
> Software Engineer - QA
> WSO2 Inc ; http://wso2.com
> lean.enterprise.middleware
> *Mobile : +94715933168 <%2B94715933168>*
> *Blog : http://yasassriratnayake.blogspot.com/
> <http://yasassriratnayake.blogspot.com/>*
>
>
>
>
>  --
> Nuwan Dias
>
>  Associate Tech Lead - WSO2, Inc. http://wso2.com
> email : nuw...@wso2.com
> Phone : +94 777 775 729
>



-- 
Yasassri Ratnayake
Software Engineer - QA
WSO2 Inc ; http://wso2.com
lean.enterprise.middleware
*Mobile : +94715933168*
*Blog : http://yasassriratnayake.blogspot.com/
<http://yasassriratnayake.blogspot.com/>*
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


Re: [Dev] [DEV][API-M] - SSO Cofiguration Documentation issue

2014-11-04 Thread Rajakrishna Reddy
Yes it used to work with AM-1.7.0 and is 5.0.0 

Why do we need that separate config element in identity. Xml now for AM-1.8.0!??

Can anyone explains why??

--
Thanks & Regards,
Rajakrishna Reddy

--- Original Message ---

From: "Nuwan Dias" 
Sent: 29 October 2014 20:40
To: "Yasassri Ratnayake" 
Cc: "WSO2 Developers' List" 
Subject: Re: [Dev] [DEV][API-M] - SSO Cofiguration Documentation issue

What if you define the SP as a 'SaaS Application', doesn't it work? It used
to work with 1.7.0 and IS 5.0.0 AFAIR.

On Wed, Oct 29, 2014 at 1:51 AM, Yasassri Ratnayake 
wrote:

> Hi All,
>
> When enabling SSO for Publisher and Store. A new config element should be
> added to identity.xml file in the IS Node in-order for tenant users to
> login, If the element is not included the following error will be shown in
> the API-M console.
>
> ERROR - jaggery_acs:jag SAML response signature is verification failed.
>
> This is reported at [1], please do the needful to fix this.
>
> [1] - https://wso2.org/jira/browse/DOCUMENTATION-1219
>
> With Regards,
> --
> Yasassri Ratnayake
> Software Engineer - QA
> WSO2 Inc ; http://wso2.com
> lean.enterprise.middleware
> *Mobile : +94715933168 <%2B94715933168>*
> *Blog : http://yasassriratnayake.blogspot.com/
> <http://yasassriratnayake.blogspot.com/>*
>



--
Nuwan Dias

Associate Tech Lead - WSO2, Inc. http://wso2.com
email : nuw...@wso2.com
Phone : +94 777 775 729
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


Re: [Dev] [DEV][API-M] - SSO Cofiguration Documentation issue

2014-10-29 Thread Yasassri Ratnayake
Hi Nuwan,

No it didn't work for me, I used IS 5 and APIM 1.8. I had to add the above
mentioned Config in-order to tenant users to login.

With Regards,

On Wed, Oct 29, 2014 at 8:39 PM, Nuwan Dias  wrote:

> What if you define the SP as a 'SaaS Application', doesn't it work? It
> used to work with 1.7.0 and IS 5.0.0 AFAIR.
>
> On Wed, Oct 29, 2014 at 1:51 AM, Yasassri Ratnayake 
> wrote:
>
>> Hi All,
>>
>> When enabling SSO for Publisher and Store. A new config element should be
>> added to identity.xml file in the IS Node in-order for tenant users to
>> login, If the element is not included the following error will be shown in
>> the API-M console.
>>
>> ERROR - jaggery_acs:jag SAML response signature is verification failed.
>>
>> This is reported at [1], please do the needful to fix this.
>>
>> [1] - https://wso2.org/jira/browse/DOCUMENTATION-1219
>>
>> With Regards,
>> --
>> Yasassri Ratnayake
>> Software Engineer - QA
>> WSO2 Inc ; http://wso2.com
>> lean.enterprise.middleware
>> *Mobile : +94715933168 <%2B94715933168>*
>> *Blog : http://yasassriratnayake.blogspot.com/
>> *
>>
>
>
>
> --
> Nuwan Dias
>
> Associate Tech Lead - WSO2, Inc. http://wso2.com
> email : nuw...@wso2.com
> Phone : +94 777 775 729
>



-- 
Yasassri Ratnayake
Software Engineer - QA
WSO2 Inc ; http://wso2.com
lean.enterprise.middleware
*Mobile : +94715933168*
*Blog : http://yasassriratnayake.blogspot.com/
*
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


Re: [Dev] [DEV][API-M] - SSO Cofiguration Documentation issue

2014-10-29 Thread Uvindra Dias Jayasinha
Even if that works still we will need to do the change to the
documentation, since if we follow the official documented method for
enabling SSO it does not work for tenant users.

On 29 October 2014 20:39, Nuwan Dias  wrote:

> What if you define the SP as a 'SaaS Application', doesn't it work? It
> used to work with 1.7.0 and IS 5.0.0 AFAIR.
>
> On Wed, Oct 29, 2014 at 1:51 AM, Yasassri Ratnayake 
> wrote:
>
>> Hi All,
>>
>> When enabling SSO for Publisher and Store. A new config element should be
>> added to identity.xml file in the IS Node in-order for tenant users to
>> login, If the element is not included the following error will be shown in
>> the API-M console.
>>
>> ERROR - jaggery_acs:jag SAML response signature is verification failed.
>>
>> This is reported at [1], please do the needful to fix this.
>>
>> [1] - https://wso2.org/jira/browse/DOCUMENTATION-1219
>>
>> With Regards,
>> --
>> Yasassri Ratnayake
>> Software Engineer - QA
>> WSO2 Inc ; http://wso2.com
>> lean.enterprise.middleware
>> *Mobile : +94715933168 <%2B94715933168>*
>> *Blog : http://yasassriratnayake.blogspot.com/
>> *
>>
>
>
>
> --
> Nuwan Dias
>
> Associate Tech Lead - WSO2, Inc. http://wso2.com
> email : nuw...@wso2.com
> Phone : +94 777 775 729
>



-- 
Regards,
Uvindra

Mobile: 33962
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


Re: [Dev] [DEV][API-M] - SSO Cofiguration Documentation issue

2014-10-29 Thread Nuwan Dias
What if you define the SP as a 'SaaS Application', doesn't it work? It used
to work with 1.7.0 and IS 5.0.0 AFAIR.

On Wed, Oct 29, 2014 at 1:51 AM, Yasassri Ratnayake 
wrote:

> Hi All,
>
> When enabling SSO for Publisher and Store. A new config element should be
> added to identity.xml file in the IS Node in-order for tenant users to
> login, If the element is not included the following error will be shown in
> the API-M console.
>
> ERROR - jaggery_acs:jag SAML response signature is verification failed.
>
> This is reported at [1], please do the needful to fix this.
>
> [1] - https://wso2.org/jira/browse/DOCUMENTATION-1219
>
> With Regards,
> --
> Yasassri Ratnayake
> Software Engineer - QA
> WSO2 Inc ; http://wso2.com
> lean.enterprise.middleware
> *Mobile : +94715933168 <%2B94715933168>*
> *Blog : http://yasassriratnayake.blogspot.com/
> *
>



-- 
Nuwan Dias

Associate Tech Lead - WSO2, Inc. http://wso2.com
email : nuw...@wso2.com
Phone : +94 777 775 729
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev


[Dev] [DEV][API-M] - SSO Cofiguration Documentation issue

2014-10-29 Thread Yasassri Ratnayake
Hi All,

When enabling SSO for Publisher and Store. A new config element should be
added to identity.xml file in the IS Node in-order for tenant users to
login, If the element is not included the following error will be shown in
the API-M console.

ERROR - jaggery_acs:jag SAML response signature is verification failed.

This is reported at [1], please do the needful to fix this.

[1] - https://wso2.org/jira/browse/DOCUMENTATION-1219

With Regards,
-- 
Yasassri Ratnayake
Software Engineer - QA
WSO2 Inc ; http://wso2.com
lean.enterprise.middleware
*Mobile : +94715933168*
*Blog : http://yasassriratnayake.blogspot.com/
*
___
Dev mailing list
Dev@wso2.org
http://wso2.org/cgi-bin/mailman/listinfo/dev