Is there a fix for PLFED-324 on JBoss EAP 6?
Issue
Is there a fix for PLFED-324 on JBoss EAP 6?
Here are the steps to reproduce the issue:
-
Download the Picketlink examples war files, found via this link: https://docs.jboss.org/author/display/PLINK/PicketLink+Quickstarts
-
Expand the idp.war and sales-post-valve.war files 3. Modify the idp.war's jboss-web.xml and add the following params to the valve configuration:
<param> <param-name>signOutgoingMessages</param-name> <param-value>false</param-value> </param> <param> <param-name>ignoreIncomingSignatures</param-name> <param-value>true</param-value> </param>This is just to get IDP working without having to configure a trust store.
-
Modify the sales-post-valve.war's picketlink.xml and add the following handler to the end:
<Handler class="org.picketlink.identity.federation.web.handlers.saml2.SAML2AttributeHandler" /> -
Repackage the war files
- Deploy to the standalone configuration
- Modify the standalone.xml per the picketlink quickstart instructions (ie adding a security domain for IDP and SP)
- Start the server.
- Login to the sales-post-vale application
- Click the link to log out and observe the exception.
Environment
- JBoss Enterprise Application Platform
- 6.x
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.
Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.
