LDAP & SAML integration with AEM 6.2
Hello!
Softwares Used:
Windows 10, AEM 6.2, ApacheDS, "apache-ds-tutorial.ldif" (sample ldif file), Tomcat 8.5.15.
Problem statement: Trying to validate a user via IDP Shebboleth2, however the below URL's seem to be Shuttling infinitely among themselves
"http://www.blogsaml.com:8080/idp/profile/SAML2/POST/SSO
"http://www.blogsaml.com:4502/content/geometrixx/saml_login"
Details: I am trying to implement SAML login and SSO by implementing the following
1) Local LDAP Server
2) Shibboleth2 (as Identity Provider aka IdP)
3) Configure AEM as Service Provider and do SSO login with SAML using Shibboleth 2
I have used the sample "apache-ds-tutorial.ldif" file to configure LDAP (this is available on the net). Configured Shibboleth2 (as my IDP) and AEM 6.2 (as my SP). The AEM configurations are depicted in the snapshots below. On trying to access the restricted content I am successfully redirected to the IDP login page. However on entering the credentials (one of the users from the sample LDIF) file I am going into and infinite URL loop, with the browser shuttling between the above mentioned URL's (in bold). I have the SAML track results in the below snapshots as well. Any suggestions as to what can be going wrong here?



SAMPLE entry in LDIF file
Sample LDIF file
# Sample LDIF data for the ApacheDS v1.0 Basic User's Guide
#
# Some sailors and their ships
# userpassword for all persons is "pass"
#
version: 1
dn: ou=people,o=sevenSeas
objectclass: organizationalUnit
objectclass: top
description: Contains entries which describe persons (seamen)
ou: people
dn: ou=groups,o=sevenSeas
objectclass: organizationalUnit
objectclass: top
description: Contains entries which describe groups (crews, for instance)
ou: groups
dn: ou=crews,ou=groups,o=sevenSeas
objectclass: organizationalUnit
objectclass: top
description: Contains entries which describe ship crews
ou: crews
dn: ou=ranks,ou=groups,o=sevenSeas
objectclass: organizationalUnit
objectclass: top
description: Contains entries which describe naval ranks (e.g. captain)
ou: ranks
# HMS Lydia Crew
# --------------
dn: cn=Horatio Hornblower,ou=people,o=sevenSeas
objectclass: person
objectclass: organizationalPerson
objectclass: inetOrgPerson
objectclass: top
cn: Horatio Hornblower
description: Capt. Horatio Hornblower, R.N
givenname: Horatio
sn: Hornblower
uid: hhornblo
mail: hhornblo@royalnavy.mod.uk
userpassword: {SHA}nU4eI71bcnBGqeO0t9tXvY1u5oQ=
regards
Harsh Saxena