From: Sander A. <sa....@fz...> - 2025-05-21 12:39:28
|
Dear Krzysztof, dear Roman, We encountered a bug in the handling of "hide-from-discovery" statements in federation metadata for SPs. We have one SP, who set the "hide-from-discovery" in the federation metadata. If this client wants to authenticate users, unity shows an SAML error, which says the issuer is not among trusted, although it is listed SAML web authentication settings among the clients from federation. It is the same error message you get if a wrong return URL is configured. Beside that the error message is wrong, it does not make sense to apply the "hide-from-discovery" for SPs because you do not have a discovery for clients. You have only a discovery for IdPs. Please let me know if you need some more details. Best regards, Sander -- Large-Scale Data Science Juelich Supercomputing Centre phone: +49 2461 61 8847 fax: +49 2461 61 6656 email: sa....@fz... ----------------------------------------------------------------------- ----------------------------------------------------------------------- Forschungszentrum Jülich GmbH 52425 Jülich Sitz der Gesellschaft: Jülich Eingetragen im Handelsregister des Amtsgerichts Düren Nr. HR B 3498 Vorsitzender des Aufsichtsrats: MinDir Stefan Müller Geschäftsführung: Prof. Dr. Astrid Lambrecht (Vorsitzende), Dr. Stephanie Bauer (stellvertretende Vorsitzende), Prof. Dr. Ir. Pieter Jansens, Prof. Dr. Laurens Kuipers ----------------------------------------------------------------------- ----------------------------------------------------------------------- |