Print

Print


Heather,

> This is the error in the idp-process log that corresponds
> ERROR
> [edu.internet2.middleware.shibboleth.idp.profile.AbstractSAMLProfileHan
> dler:397] - No return endpoint available for relying party
> urn:mace:ac.uk:sdss.ac.uk:provider:service:target.iay.org.uk

This almost certainly  means that *your* metadata is incorrect (it's declared within relying-party.xml) - http://www.ukfederation.org.uk/content/Documents/Setup2IdP#metadata

Usually there will be a trace in the DEBUG statements running up to this.  Another quick check is whether the spool metadata file (in $IDP_HOME\metadata) there.

You might also want to take this to the guys at federation support.  They have huge practise at helping out with this kinda stuff, and better still have access to the test machine's logs.

R