UMC SAML not working anymore

Hello,

the SAML login on UMC is not working anymore.

I don’t now the problem already exist because I haven’t used it for a long time.

Not long ago I created new certificates for the UCS systems. Maybe this is the source of the problem. But I don’t changed the UCS CA and also not the ucs-sso certificate.

Backtrace:
1 /usr/share/simplesamlphp/www/_include.php:37 (SimpleSAML_exception_handler)
0 [builtin] (N/A)
Caused by: Exception: Unable to validate Signature
Backtrace:
6 /usr/share/simplesamlphp/vendor/simplesamlphp/saml2/src/SAML2/Utils.php:157 (SAML2_Utils::validateSignature)
5 [builtin] (call_user_func)
4 /usr/share/simplesamlphp/vendor/simplesamlphp/saml2/src/SAML2/Message.php:221 (SAML2_Message::validate)
3 /usr/share/simplesamlphp/modules/saml/lib/Message.php:194 (sspmod_saml_Message::checkSign)
2 /usr/share/simplesamlphp/modules/saml/lib/Message.php:251 (sspmod_saml_Message::validateMessage)
1 /usr/share/simplesamlphp/modules/saml/lib/IdP/SAML2.php:305 (sspmod_saml_IdP_SAML2::receiveAuthnRequest)
0 /usr/share/simplesamlphp/www/saml2/idp/SSOService.php:18 (N/A)

Kind regards,
SirTux

It was enough to run

univention-run-join-scripts --force --run-scripts 92univention-management-console-web-server.inst
2 Likes
Mastodon