Skip to Content.
Sympa Menu

cat-users - Re: [[cat-users]] CAT - eduroam administrator

cat-users AT lists.geant.org

Subject: The mailing list for users of the eduroam Configuration Assistant Tool (CAT)

List archive

Re: [[cat-users]] CAT - eduroam administrator


Chronological Thread 
  • From: "Anderson P. Almeida" <anderson.almeida AT rnp.br>
  • To: Stefan Winter <stefan.winter AT restena.lu>, eduroam-ot AT lists.geant.org
  • Cc: cat-users <cat-users AT lists.geant.org>, miro AT srce.hr, Luciano Fernandes da Rocha <luciano.rocha AT rnp.br>
  • Subject: Re: [[cat-users]] CAT - eduroam administrator
  • Date: Tue, 11 Sep 2018 13:19:41 -0300 (BRT)


Hello,

>My guess though is that you maybe changed something in your IdP
>configuration or software version. This sometimes leads to change in
>calculation of the opaque user identifier (persistent NameID, or
>eduPersonTargetedId). I've seen this happen often when people upgrade
>from Shibboleth 2.x to 3.x.
>Did you or the IdP administrator work in this area recently?

No, there was no recent change.
Another administrator also allowed in the same period. on CAT eduroam -
"Luciano Fernandes da Rocha"
<luciano.rocha AT rnp.br>.

>If not, please contact eduroam OT directly so they can investigate the
> issue on the eduroam SP proxy side.

eduroam OT, can you help us solve this problem?
The realm.xml file: http://www.eduroam.br/general/realm.xml


Thank you all,


Anderson P. Almeida
Serviços e P&D - PoP-AL
RNP – Rede Nacional de Ensino e Pesquisa
http://pop-al.rnp.br
http://www.rnp.br
Fone:(82)3315-4999/Ramal:8201



----- Mensagem original -----
De: "Stefan Winter"
<stefan.winter AT restena.lu>
Para: "Anderson P. Almeida"
<anderson.almeida AT rnp.br>,
"cat-users"
<cat-users AT lists.geant.org>
Enviadas: Quarta-feira, 5 de Setembro de 2018 3:02:34
Assunto: Re: [[cat-users]] CAT - eduroam administrator

Hello,

> my user received and then lost permission to send invitations to the
> institutions to access the CAT Eduroam platfor
>
> It's interesting because I did not change the information in the realm.xml
> file
> (http://www.eduroam.br/general/realm.xml).
>
> Can you help me ?

Permissions are handled by the eduroam SP Proxy, which is independent
from CAT. So my insight into why you lost NRO permissions there is limited.

My guess though is that you maybe changed something in your IdP
configuration or software version. This sometimes leads to change in
calculation of the opaque user identifier (persistent NameID, or
eduPersonTargetedId). I've seen this happen often when people upgrade
from Shibboleth 2.x to 3.x.

Did you or the IdP administrator work in this area recently?

If not, please contact eduroam OT directly so they can investigate the
issue on the eduroam SP proxy side.

Greetings,

Stefan Winter

--
Stefan WINTER
Ingenieur de Recherche
Fondation RESTENA - Réseau Téléinformatique de l'Education Nationale et
de la Recherche
2, avenue de l'Université
L-4365 Esch-sur-Alzette

Tel: +352 424409 1
Fax: +352 422473

PGP key updated to 4096 Bit RSA - I will encrypt all mails if the
recipient's key is known to me

http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xC0DE6A358A39DC66



Archive powered by MHonArc 2.6.19.

Top of Page