AltinSoft Information Technologies
AltinSoft Information Technologies
@ststeiger problem solved ? If you managed to solve this problem, would you help me?
> Done, know how it works. > Will send a pull-request with a sample medium-shortly. Thank you very much!
> VGAuthService thinks the token doesn't match the official schema. > > Where did this token come from? Did anything modify it long the way? We've seen issues where code...
**Example Token :** @lemke1458 `https://10.0.0.2/websso/SAML2/Metadata/vsphere.localZKsZ4+ZG4riFMDfXBn3EOnmtqeU462ewiC8ttgWVL54=K/8piqVtuZ9gUrq2y7eJa5ikfOQS5HMJp9/XEjl1p/Ag5YKD2+Qx+ThGo3VqG3Ugpc+c5GdC1aYYa4woj9zoyhYJhNRZoe0CAWH9KH3cYmqyyLAO6sDNk/ch6oCPvjMC4/RHI/F1niRbR7J1WSIlYP01+XTZYRuijMBip+7nX6HnFNjGPRxSynET8w7bpxd02INw2M114tKCVBON+nC7Be6BUkY0rSTNCLx7u3gVod/D5qcAEeGKCBZN31ybbl+BLK+M2kb/3btmGUg6sYAMydl/aPRRgZm7KYvI/VAeeIN+NyscOWxJ6/5zWe4Vuj6pj3MvjLNe62Huw86pIDPC8w==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[email protected]:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransportfalsevsphere.localAdministratorvsphere.local\Usersvsphere.local\Administratorsvsphere.local\CAAdminsvsphere.local\SystemConfiguration.BashShellAdministratorsvsphere.local\SystemConfiguration.ReadOnlyvsphere.local\SystemConfiguration.SupportUsersvsphere.local\SystemConfiguration.Administratorsvsphere.local\LicenseService.Administratorsvsphere.local\Everyone`
> You're not showing how the token is used, but since your token fetching function is returning SamlToken object, instead of the actual string, it seems very likely that you...
> Compare the Saml.TokenString you're using above with the data you dumped when it came from the SSO server. They have to be the same; I suspect they're not because...
> Alright, lets start with the XML schemas. > > VGAuth's packaged and installed XML schemas files can be found on the guest: On Linux: /etc/vmware-tools/vgauth/schemas/ > > On Windows:...
> The SAML token pasted above looks good to me actually. > > The usage of SamlToken from the vsphere-automation-sdk-for-java to parse the XML and serialize it back shouldn't be...
> yes. It works fine in java code. "rsa:RenewRestrictionType" does not exist in the java code. https://github.com/vmware-archive/vsphere-automation-sdk-.net/blob/e04396cdd716360bf01fd83cafe905deaab5b2aa/vmware/samples/common/SamplesCommon/SsoHelper.cs#L40 When the example here is used, incorrect saml token is returned. The xml...
I guess nobody knows the solution to this problem. :(