dconagh Posted September 4, 2017 Posted September 4, 2017 Hello, Our users are currently getting the below error when they are trying to access Hornbill. However this message doesn't display for me it lets me (administrator) in to Hornbill. Can anyone please help? Thank you, Dan
Guest Ehsan Posted September 4, 2017 Posted September 4, 2017 @dconagh, Please refer to the following Wiki document: https://wiki.hornbill.com/index.php/Single_Sign_On_Profiles#Common Issues
dconagh Posted September 4, 2017 Author Posted September 4, 2017 As an update I have tried this... https://wiki.hornbill.com/index.php/Single_Sign_On_Profiles#Common_Issues but I get an error that says 'Empty XML' And I have also tried this... https://wiki.hornbill.com/index.php/SSO_Example_Config_Microsoft_ADFS_2.0_for_User_Accounts This gave me the xml and I didn't get an error but it didn't seem to make any changes. Thank you, Dan
Martyn Houghton Posted September 4, 2017 Posted September 4, 2017 @dconagh Dan If you turn off 'Validate Certificate' in the SSO config, are the users able to login? Cheers Martyn
dconagh Posted September 4, 2017 Author Posted September 4, 2017 @Martyn Houghton Hello Martyn, Thank you for your response. This has worked and has allowed the other uses access to Hornbill again. I am assuming that it isn't a good idea to leave it this way based on the red banner that I got when making the change. Thank you, Dan
Martyn Houghton Posted September 4, 2017 Posted September 4, 2017 @dconagh Indeed, just a way to buy you some time to get the endpoint bit sorted to get the new trust certificate in place. Cheers Martyn
dconagh Posted September 4, 2017 Author Posted September 4, 2017 @Ehsan Hello Ehsan, I did follow that wiki that you directed me to but unfortunately after clicking on the cloud icon and typing my url in (https://mydomain/adfs/FederationMetadata/2007-06/FederationMetadata.xml) it gives me an error that says 'Empty XML'. Do you have any other suggestions? Thank you, Dan
Victor Posted September 4, 2017 Posted September 4, 2017 @dconagh your metadata file is not public so Hornbill instance can't access it hence the empty XML message. You need to manually process this file. Open the URL in a browser, it should display the XML file content. Copy this and use the other option to process metadata in Hornbill (XML file)...
Guest Ehsan Posted September 4, 2017 Posted September 4, 2017 @dconagh That would be because the Admin Tool cannot access the URL. Alternatively, please paste the content of the file (i.e. download it to your desktop, open the file in an editor and copy the content) into XML field and leave the URL field blank.
dconagh Posted September 4, 2017 Author Posted September 4, 2017 @Victor Hello Victor, Thanks again for your response. Unfortunately I get 404 error when I try navigating directly to the xml file. I also logged on to our adfs server to see if I could find the xml file but I can't find it there either. Have you got any other ideas? Thank you, Dan
dconagh Posted September 4, 2017 Author Posted September 4, 2017 @Ehsan Do you know how I go about finding the xml file to be able to download it and get at the xml in order to paste it in to the xml box? I have looked on our adfs server and I can't find it anywhere. Thank you, Dan
Guest Ehsan Posted September 4, 2017 Posted September 4, 2017 @dconagh Speaking to a developer here at Hornbill, I've been informed that if you remove "/adfs" from the URL, you will be able to download the file. i.e. This URL: https://mydomain/adfs/FederationMetadata/2007-06/FederationMetadata.xml Becomes: https://mydomain/FederationMetadata/2007-06/FederationMetadata.xml
dconagh Posted September 4, 2017 Author Posted September 4, 2017 @Ehsan Hello Ehsan, Thanks for the response. I have done as you said and removed the adfs part to my url and sure enough I get some xml back. I will wait until the helpdesk have finished using Hornbill for the day and then copy and paste the xml in to the admin section on the SSO Profile. Hopefully this will work. Thank you, Dan
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now