__Host-shib_idp_session cookie is not created when using the JDBCStorageService and OIDC

Description

As soon as I use a SAML SP, a __Host-shib_idp_session cookie is created and all following reuses for SSO work, regardless of whether SAML SP or OIDC RP.

Environment

None

Activity

Steffen HofmannSeptember 5, 2024 at 2:19 PM

Here is the full description, sorry:
I have set up a test environment with two SAML-SPs and two OIDC-RPs. The OIDC plugin is also installed on the IdP.

There are no problems when using the shibboleth.ClientSessionStorageService.

If the JDBCStorageService is used and I log on to an OIDC-RP first, the login screen appears again at the next RP/SP. I was able to reproduce the problem to the extent that no __Host-shib_idp_session cookie is created.

As soon as I use a SAML SP, a __Host-shib_idp_session cookie is created and all following reuses for SSO work, regardless of whether SAML SP or OIDC RP.

Duplicate

Details

Assignee

Reporter

Created September 5, 2024 at 2:16 PM
Updated September 5, 2024 at 2:25 PM
Resolved September 5, 2024 at 2:25 PM