Error in SAML SOAP SLO
Logs:
[info] No cookie found
[debug] Build URL https://auth.openid.club/saml/singleLogoutSOAP
[debug] Redirect 81.250.130.213 to portal (url was /saml/singleLogoutSOAP)
[debug] User not authenticated, Try in use, cancel redirection
[debug] Start routing saml
[debug] URL /saml/singleLogoutSOAP detected as an SLO URL
[debug] SAML method: HTTP-SOAP
[debug] HTTP-SOAP: SAML Request <s:Envelope xmlns:s="http://schemas.xmlsoap.org/soap/envelope/" xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"><s:Body><samlp:LogoutRequest ID="_D8BE91A18DBF1A0E39126D5F5C9C334F" Version="2.0" IssueInstant="2018-06-12T14:09:26Z" Destination="https://auth.openid.club/saml/singleLogoutSOAP"><saml:Issuer>http://auth.example.com/saml/metadata</saml:Issuer><Signature xmlns="http://www.w3.org/2000/09/xmldsig#">
<SignedInfo>
<CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
<SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
<Reference URI="#_D8BE91A18DBF1A0E39126D5F5C9C334F">
<Transforms>
<Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
<Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
</Transforms>
<DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
<DigestValue>QL0hbUrxYkjJ1nriazjbecV0/jw=</DigestValue>
</Reference>
</SignedInfo>
<SignatureValue>dUinvXMdWwSdncUyJnsZaaDgWIhqB8oL1LQ2nRrJhFZWYPT/+nLaxf3TR4Y3u/Op
Z17apn3ziOnVM5baCplHp6c/5tQg4cUK0ToMOi5niK9e6XgFi2lJ8K16euoykpFk
B570kxzbqq222CHc/Mblm/QjMgVQkK/VITbMVfgn8HdL+B69xLydya6gJb/pKH2f
peDmk/FDAhwJoedFHScGcksljKEQq0BqzdmIR9bUOMZx1J+mX9NyMUrNDCPHJQgv
RASg4vVXuNYLodsLjHvcfDH0pwJ5E5h6Kx4BYpY+XuB2mh22nUiSNtRnnjKtMuIu
07YDQm3ujnix7xQ8p27Xfg==</SignatureValue>
<KeyInfo>
<KeyValue>
<RSAKeyValue>
<Modulus>
kkxNhKZRa3SyMsK5fuGG7Uc/wDCRomk7x46dfmtgON8I7jABnWTzs38acdMI6JNC
xTEZ9BFTgcott5rCrvXJlg9u/JJxy3alT5HqJXV+AXw/6YIDiBkWO4Ow/NAKjqFM
S7wt2iPimdB/NzCC5lD3jTVrpsAR7TcaSLpnwP25WSK0TnvMXxUjVub3kxyf4+BX
ylKC+xAcphrSrwgcpwsGDvKpl66/jAEB7IP21ijUqY35UeMaaNVpajOsgGzTmqXK
P3U6L3YcVONi4v0tSM2ne1gIlmG8fS2xye9ns8ZuTEVk3DlHO5Zs4FaEb57GV1eD
Rxko/uJF7QWmWvUPeUPEcQ==
</Modulus>
<Exponent>
AQAB
</Exponent>
</RSAKeyValue>
</KeyValue>
</KeyInfo>
</Signature><saml:NameID Format="urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress">clement@oodo.net</saml:NameID><samlp:SessionIndex>02e3a70e5ea92083b236d97b030e2f55</samlp:SessionIndex>
</samlp:LogoutRequest></s:Body></s:Envelope>
[debug] SLO: Logout request is valid
[debug] Found entityID http://auth.example.com/saml/metadata in SAML message
[debug] http://auth.example.com/saml/metadata match ader-sfl SP in configuration
[debug] Get session id 43b011e743a811673980ca2d6c23457b (from session index 02e3a70e5ea92083b236d97b030e2f55)
[debug] Try to get SSO session 43b011e743a811673980ca2d6c23457b
[debug] Return SSO session 43b011e743a811673980ca2d6c23457b
[debug] Loading Session dump: <Session xmlns="http://www.entrouvert.org/namespaces/lasso/0.0" Version="2">
<NidAndSessionIndex ProviderID="http://auth.example.com/saml/metadata" AssertionID="_C6F75D428CAC49D6C9004D0CA3BDBFB6" SessionIndex="02e3a70e5ea92083b236d97b030e2f55">
<saml:NameID xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" Format="urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress">clement@oodo.net</saml:NameID>
</NidAndSessionIndex>
</Session>
[debug] Lasso Session loaded
[debug] Signature is valid
[debug] Destination https://auth.openid.club/saml/singleLogoutSOAP found in SAML message
[debug] Destination match URL https://auth.openid.club/saml/singleLogoutSOAP
[debug] Retrieve SAML session f7177e5995c85ad8b518010c5a3b8180
[debug] SAML session f7177e5995c85ad8b518010c5a3b8180 deleted
[debug] Processing code ref
[debug] Processing code ref
[debug] Processing code ref
[debug] Processing code ref
[debug] No CAS session found for session 43b011e743a811673980ca2d6c23457b
[debug] Processing code ref
[debug] Processing code ref
[debug] Processing deleteSession
[debug] Try to get SSO session 43b011e743a811673980ca2d6c23457b
[debug] Return SSO session 43b011e743a811673980ca2d6c23457b
[debug] Local handler logout
[notice] User coudot has been disconnected
[debug] Session 43b011e743a811673980ca2d6c23457b deleted from global storage
[debug] Returned error: 47
[debug] Calling autoredirect
[debug] Skin returned: login
[debug] Calling sendHtml with template login
[debug] Starting HTML generation using /usr/share/lemonldap-ng/portal/templates/bootstrap/login.tpl
[debug] Sending /usr/share/lemonldap-ng/portal/templates/bootstrap/login.tpl
[debug] Loading Session dump: <Session xmlns="http://www.entrouvert.org/namespaces/lasso/0.0"/>
[debug] SOAP response <s:Envelope xmlns:s="http://schemas.xmlsoap.org/soap/envelope/" xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"><s:Body><samlp:LogoutResponse ID="_05545D8FD79B02929AFCFC1AC73EBA0B" InResponseTo="_D8BE91A18DBF1A0E39126D5F5C9C334F" Version="2.0" IssueInstant="2018-06-12T14:09:26Z"><saml:Issuer>https://auth.openid.club/saml/metadata</saml:Issuer><Signature xmlns="http://www.w3.org/2000/09/xmldsig#">
<SignedInfo>
<CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
<SignatureMethod Algorithm="http://www.w3.org/2000/09/xmldsig#rsa-sha1"/>
<Reference URI="#_05545D8FD79B02929AFCFC1AC73EBA0B">
<Transforms>
<Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
<Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
</Transforms>
<DigestMethod Algorithm="http://www.w3.org/2000/09/xmldsig#sha1"/>
<DigestValue>ztM0STN4rZ07Wjoh85Ti/FWFWk8=</DigestValue>
</Reference>
</SignedInfo>
<SignatureValue>Vwv9WLlrPPFrg6jdGQjgorfHBziq947nDvCcTlW1LUQA8wdbT8h2gmLC8h97wbFX
uNIrWBAOB9G2ryRv4f4LHhxeogl3Ljsu2V9LHadYrxbE8lVadePJMrwOrg5YtOU/
Xi8YTua3Ao3i1pVZ2TuAYGOVFvhTC0bgVqC30bevVhOAkpxVh1QIbcqu9+asXdps
IsMtkhPwPNm7fXBFd6Tqfcb+loZX2+qdyc3nyK70gEbI/M6jV+6NOxuyNHrjwFRr
K12SZBA58YUiAKzUAHXVLDe0wz1EPZS2PYrKH1PVBeTQTUDeD2ilyN3m+HN83jlk
7Odfj53BY6Nswi97W+ZW/g==</SignatureValue>
<KeyInfo>
<X509Data>
<X509Certificate>MIIDQDCCAigCCQDPU9MLFZJbWTANBgkqhkiG9w0BAQsFADBiMQswCQYDVQQGEwJG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</X509Certificate>
</X509Data>
</KeyInfo>
</Signature><samlp:Status><samlp:StatusCode Value="urn:oasis:names:tc:SAML:2.0:status:Success"/></samlp:Status></samlp:LogoutResponse></s:Body></s:Envelope>
[info] No cookie found
[debug] Build URL https://auth.openid.club/saml/singleLogoutSOAP
[debug] Redirect 81.250.130.213 to portal (url was /saml/singleLogoutSOAP)
[debug] User not authenticated, Try in use, cancel redirection
[debug] Start routing saml
[debug] URL /saml/singleLogoutSOAP detected as an SLO URL
[debug] SAML method: HTTP-SOAP
[debug] HTTP-SOAP: SAML Request <s:Envelope xmlns:s="http://schemas.xmlsoap.org/soap/envelope/" xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion"><s:Body><samlp:LogoutRequest ID="_A62C5FF94A7B5DE2889923685D4C50B8" Version="2.0" IssueInstant="2018-06-12T14:09:26Z" Destination="https://auth.openid.club/saml/singleLogoutSOAP"><saml:Issuer>http://auth.example.com/saml/metadata</saml:Issuer><saml:NameID Format="urn:oasis:names:tc:SAML:1.1:nameid-format:emailAddress">clement@oodo.net</saml:NameID><samlp:SessionIndex>02e3a70e5ea92083b236d97b030e2f55</samlp:SessionIndex>
</samlp:LogoutRequest></s:Body></s:Envelope>
[debug] SLO: Logout request is valid
[debug] Found entityID http://auth.example.com/saml/metadata in SAML message
[debug] http://auth.example.com/saml/metadata match ader-sfl SP in configuration
[warn] SAML session 02e3a70e5ea92083b236d97b030e2f55 isn't yet available
[Tue Jun 12 16:09:26.711616 2018] [fcgid:warn] [pid 60891] [client 81.250.130.213:48200] mod_fcgid: stderr: Can't use string ("59") as an ARRAY ref while "strict refs" in use at /usr/share/perl5/Lemonldap/NG/Handler/PSGI/Try.pm line 74.
[info] Session 43b011e743a811673980ca2d6c23457b can't be retrieved
[info] Session cannot be tied: Object does not exist in the data store at /usr/share/perl5/Apache/Session/Store/File.pm line 98.