Uploaded image for project: 'OpenAM'
  1. OpenAM
  2. OPENAM-5208

SAML2 SLO error on IDP with Session Synchronization when SP does not support SOAP binding

    Details

    • Type: Bug
    • Status: Resolved
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: 11.0.0, 11.0.1, 11.0.2
    • Fix Version/s: 11.0.3, 12.0.1, 13.0.0
    • Component/s: SAML
    • Labels:
    • Support Ticket IDs:

      Description

      This is related to OPENAM-1012;

      When Session Synchronization is enabled in the IDP, and a SP does not support the SOAP binding, an error is thrown and the process stops. The process should keep going for the SPs supporting SOAP binding.

      The error in the Federation file is:

      libSAML2:10/28/2014 06:15:37:018 PM UTC: Thread[SystemTimerPool,5,main] 
      ERROR: LogoutUtil.doLogout: Unable to find the recipient's single logout service with the binding null 
      libSAML2:10/28/2014 06:15:37:018 PM UTC: Thread[SystemTimerPool,5,main] 
      ERROR: IDPSessionListener.sessionInvalidated: 
      com.sun.identity.saml2.common.SAML2Exception: Single Logout Service location not found. 
      

        Attachments

          Issue Links

            Activity

              People

              • Assignee:
                peter.major Peter Major [X] (Inactive)
                Reporter:
                nathalie.hoet Nathalie Hoet
              • Votes:
                0 Vote for this issue
                Watchers:
                4 Start watching this issue

                Dates

                • Created:
                  Updated:
                  Resolved: