Skip to content

Instantly share code, notes, and snippets.

@aaronchi
Created March 5, 2014 01:41
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save aaronchi/9359599 to your computer and use it in GitHub Desktop.
Save aaronchi/9359599 to your computer and use it in GitHub Desktop.
Box SAML debugging
<samlp:AuthnRequest IssueInstant="2014-03-05T01:39:52.993Z"
ID="v2s9D7jwhXxeuo5pxOt4lBGZ54x"
Version="2.0"
xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol"
>
<saml:Issuer xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion">box.net</saml:Issuer>
<samlp:NameIDPolicy AllowCreate="true" />
</samlp:AuthnRequest>
<samlp:Response ID="_0c0df300-8635-0131-7cd0-20c9d044e103"
Version="2.0"
IssueInstant="2014-03-05T01:40:25Z"
Destination="https://sso.services.box.net/sp/ACS.saml2"
Consent="urn:oasis:names:tc:SAML:2.0:consent:unspecified"
InResponseTo="v2s9D7jwhXxeuo5pxOt4lBGZ54x"
xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol"
>
<Issuer xmlns="urn:oasis:names:tc:SAML:2.0:assertion">http://bitium.dev/bitium.com</Issuer>
<samlp:Status>
<samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success" />
</samlp:Status>
<Assertion xmlns="urn:oasis:names:tc:SAML:2.0:assertion"
ID="_0c0df400-8635-0131-7cd0-20c9d044e103"
IssueInstant="2014-03-05T01:40:25Z"
Version="2.0"
>
<Issuer>http://bitium.dev/bitium.com</Issuer>
<ds:Signature xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:SignedInfo xmlns:ds="http://www.w3.org/2000/09/xmldsig#">
<ds:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#" />
<ds:SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1" />
<ds:Reference URI="#_0c0df400-8635-0131-7cd0-20c9d044e103">
<ds:Transforms>
<ds:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature" />
<ds:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#" />
</ds:Transforms>
<ds:DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1" />
<ds:DigestValue>HQUVu0B2ca8uAsUNVFYYzxo6a9k=</ds:DigestValue>
</ds:Reference>
</ds:SignedInfo>
<ds:SignatureValue>fuHhWs7+SLLeI7snlQ4wbqpYrNvy0iDSxT8/Ry9zYEvsXcOpTFudvRXFKvBCK3l7BZ0nD6DCAR/SCyHYUhJkqx8/+1t/Z3z2TsTCjaFywJbQOYDJSHBsyRTMRRxPG9nNBfU00IatZZYxqtjmdsi4s2JLjHowZOcucUl0x1KR6ltMYgTsQSJ4dEUksvoKdQxGfE5zWO3gk+oPdLxDwcXi1d86rVZDK/cJlbL5PwRFFYmRzFh5i5NYDlURldd8kYbHi0KtHeWZWgUBBSK0dsbHsSiSKIWEczQfxUZ1tsHa+mQHQQw9rdkAxijEKk5vBzWk3FPanhzWO+hn/OzKrufpiA==</ds:SignatureValue>
<KeyInfo xmlns="http://www.w3.org/2000/09/xmldsig#">
<ds:X509Data>
<ds:X509Certificate>MIICMTCCAiWgAwIBAgIBATADBgEAMGcxCzAJBgNVBAYTAlVTMQswCQYDVQQIDAJDQTEUMBIGA1UEBwwLTG9zIEFuZ2VsZXMxDzANBgNVBAoMBkJpdGl1bTEPMA0GA1UECwwGQml0aXVtMRMwEQYDVQQDDApiaXRpdW0uY29tMB4XDTEzMTAzMTIxMzE1MloXDTIzMTAzMTIxMzE1MlowZzELMAkGA1UEBhMCVVMxCzAJBgNVBAgMAkNBMRQwEgYDVQQHDAtMb3MgQW5nZWxlczEPMA0GA1UECgwGQml0aXVtMQ8wDQYDVQQLDAZCaXRpdW0xEzARBgNVBAMMCmJpdGl1bS5jb20wggEiMA0GCSqGSIb3DQEBAQUAA4IBDwAwggEKAoIBAQC1I6bt9K2Yw5kJNM11OqXZCRb/yo72dXA7x43IUciDuu4xnsjl5zz8DaEhTY2rkHfR3UH/jtL6XlqeCWbGeect9CRhyQMbqRJAkbcfBcat0E5+JPZMeVF5UoTF93PZvc88wgrogYAlL7XxXMjzEJyezxw9rwVDzWjGLsOP1tj4RcCnW2Y5h3oetcCNdOH/lY6n/IOL/G3TMhdx31uHJMrQypb8j9CbGTjEtds93f+vW6k8coOJLJzyt3jGYBGo2eReFBai9hCBqKpzgdxx0zc1dlInhX+DHOb1eBiUn+Agc0LLzpZP5E90VNhLdZhjQKnixW4vslBhBvHIgkuAvzOzAgMBAAEwAwYBAAMBAA==</ds:X509Certificate>
</ds:X509Data>
</KeyInfo>
</ds:Signature>
<Subject>
<NameID Format="urn:oasis:names:tc:SAML:2.0:nameid-format:emailAddress">akash@saml.testbit.co</NameID>
<SubjectConfirmation Method="urn:oasis:names:tc:SAML:2.0:cm:bearer">
<SubjectConfirmationData InResponseTo="v2s9D7jwhXxeuo5pxOt4lBGZ54x"
NotOnOrAfter="2014-03-05T01:43:25Z"
Recipient="https://sso.services.box.net/sp/ACS.saml2"
/>
</SubjectConfirmation>
</Subject>
<Conditions NotBefore="2014-03-05T01:40:20Z"
NotOnOrAfter="2014-03-05T01:55:25Z"
>
<AudienceRestriction>
<Audience>box.net</Audience>
</AudienceRestriction>
</Conditions>
<AttributeStatement>
<Attribute Name="email"
NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
FriendlyName="Email"
>
<AttributeValue>aaron@bitium.com</AttributeValue>
</Attribute>
<Attribute Name="first_name"
NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
FriendlyName="FirstName"
>
<AttributeValue>Aaron</AttributeValue>
</Attribute>
<Attribute Name="last_name"
NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri"
FriendlyName="LastName"
>
<AttributeValue>Eisenberger</AttributeValue>
</Attribute>
</AttributeStatement>
<AuthnStatement AuthnInstant="2014-03-05T01:40:25Z"
SessionIndex="_0c0df400-8635-0131-7cd0-20c9d044e103"
>
<AuthnContext>
<AuthnContextClassRef>urn:oasis:names:tc:SAML:2.0:ac:classes:Password</AuthnContextClassRef>
</AuthnContext>
</AuthnStatement>
</Assertion>
</samlp:Response>
@aaronchi
Copy link
Author

aaronchi commented Mar 5, 2014

Results in:

System Error
Sorry, an unexpected error condition has occurred. Please contact your system administrator for assistance and provide the following reference number to help locate additional information about this problem in the system log files.
Error Reference: gbrmaa

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment