The Incommon Federation wiki has moved.

Please visit the new InCommon Federation Library wiki for updated content. Remember to update your bookmarks.

Click in the link above if you are not automatically redirected in 15 seconds.



You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 45 Next »

After several months of communication with participants, InCommon Operations removed the legacy metadata download endpoint (currently, a redirect) on Wednesday, February 14, 2018

All metadata clients that attempt to download metadata from this endpoint should have switched to one of the production endpoints noted in: Metadata Aggregates before that date. Failure to update to the production metadata locations has likely caused your SAML deployment to break on February 27, 2018 at approximately 2:44 p.m. US Eastern Time.


For many years, InCommon has supported a redirect from a very old metadata download location:

http://wayf.incommonfederation.org/InCommon/InCommon-metadata.xml

And

https://wayf.incommonfederation.org/InCommon/InCommon-metadata.xml

To the current production (“main”) aggregate location:

http://md.incommon.org/InCommon/InCommon-metadata.xml

On February 14, 2018, InCommon Operations REMOVED this redirect.

It is CRITICAL that all production metadata clients be configured to fetch metadata from http://md.incommon.org/InCommon/InCommon-metadata.xml or one of the other three locations on md.incommon.org.

If you currently fetch metadata from one of the old (wayf.incommonfederation.org) locations noted above, you need to reconfigure your deployment. Failure to do so means that your IdP and/or SPs broke on February 27, 2018.

At the bottom of this page, you will find a list of hosts, updated weekly, that are still downloading metadata from the old location. If you see a host on the list that is at your organization, please contact the relevant systems personnel to arrange to switch metadata consumption to one of the supported aggregates.

Please pass along this information to anyone in your organization who is responsible for running an IdP or SP in InCommon, especially those such as delegated administrators or other systems administrators who may not be subscribed to this mailing list.


The information below was last updated on Monday, March 26, 2018.

IMPORTANT: The table on the left is a list of root DNS zones with hosts still attempting to access the legacy metadata location. The table on the right is a list of actual hosts still attempting to access the legacy metadata.


REMINDER: When you make a configuration change to target one of the current production metadata aggregate locations, you may need to restart your SAML SP software (shibd/etc) to cause it to re-read the configuration.


Hosts still attempting to use legacy metadata endpoint
1137.211.93.208.in-addr.arpa
2141.154.251.23.bc.googleusercontent.com
3216-139-212-28.aus.us.siteprotect.com
42252-00f1-bc01.ucsfmedicalcenter.org
52252-00f1-bc02.ucsfmedicalcenter.org
62408-0c50-bc01.ucsfmedicalcenter.org
72408-0c50-bc02.ucsfmedicalcenter.org
85-10-31-155.everestdc.com
95-10-31-164.everestdc.com
105-10-31-182.everestdc.com
115-10-31-214.everestdc.com
1269-168-255-13.brainerd.net
1369-168-255-43.brainerd.net
1469-168-255-62.brainerd.net
15ACMWEB06.acm.org
16ACMWEB10.acm.org
17al2s-demo.net.internet2.edu
18aragusa-dev6.grnoc.iu.edu
19atg-pool.nat.uw.edu
20borked.wpi.edu
21cloudvpn2.code42.com
22cluster1.serialssolutions.com
23collections.library.illinois.edu
24cp.nursing.jhu.edu
25crowd-surf.surf.nl
26crowd-test.surfnet.nl
27crowd.surfnet.nl
28ctl.jhsph.edu
29dhn-c5-efs.duhs.duke.edu
30docdelivery2.trondent.com
31dora.uark.edu
32dpoc.uark.edu
33ec2-107-22-198-108.compute-1.amazonaws.com
34ec2-107-22-238-17.compute-1.amazonaws.com
35ec2-107-23-147-38.compute-1.amazonaws.com
36ec2-107-23-200-82.compute-1.amazonaws.com
37ec2-107-23-78-15.compute-1.amazonaws.com
38ec2-184-72-147-129.compute-1.amazonaws.com
39ec2-34-226-222-114.compute-1.amazonaws.com
40ec2-50-17-229-101.compute-1.amazonaws.com
41ec2-52-1-179-223.compute-1.amazonaws.com
42ec2-52-200-73-158.compute-1.amazonaws.com
43ec2-52-206-216-95.compute-1.amazonaws.com
44ec2-52-21-240-124.compute-1.amazonaws.com
45ec2-52-6-126-78.compute-1.amazonaws.com
46ec2-52-7-144-22.compute-1.amazonaws.com
47ec2-52-91-134-224.compute-1.amazonaws.com
48ec2-54-146-225-47.compute-1.amazonaws.com
49ec2-54-147-125-241.compute-1.amazonaws.com
50ec2-54-164-203-179.compute-1.amazonaws.com
51ec2-54-175-50-103.compute-1.amazonaws.com
52ec2-54-186-107-10.us-west-2.compute.amazonaws.com
53ec2-54-210-41-28.compute-1.amazonaws.com
54ec2-54-210-58-241.compute-1.amazonaws.com
55ec2-54-211-88-6.compute-1.amazonaws.com
56ec2-54-221-238-160.compute-1.amazonaws.com
57ec2-54-85-240-29.compute-1.amazonaws.com
58ec2-54-87-226-206.compute-1.amazonaws.com
59ec2-54-88-67-127.compute-1.amazonaws.com
60esappi11.uits.iu.edu
61esappi12.uits.iu.edu
62eth0-0-fw3-1-ap-q18-va2.blackboard.com
63eth0-0-fw3-1-ap-r137-3-va3.blackboard.com
64eth0-0-fw3-1-ap-r137-3-va3.mhint
65ewebproxy.thomsonreuters.com
66fischer-gig.fischerinternational.com
67fischerwall.fisc.com
68fw-msp--sw-core-msp--4009.code42.com
69gannicus.las.uic.edu
70ginger.autonomy.ri.cmu.edu
71gis.accc.uic.edu
72git.bmi.osumc.edu
73gmoc-db.grnoc.iu.edu
74google2.utsystem.edu
75gradleaders-vsrx.expedient.com
76gw1-va2.blackboard.com
77hq.atomiclearning.com
78idp.mbl.edu
79ip-128-239-61-105.v4.wm.edu
80ITDEV2.QATAR.CMU.EDU
81library.proxy.mbl.edu
82mail.ts24.com
83mblfw.whoi.net
84net253.is.jhsph.edu
85net4.jhsph.edu
86node2150.it.mtu.edu
87ocw.jhsph.edu
88ohcininetng-fw01.cengage.com
89pc4.sdn-test.grnoc.iu.edu
90proxy-ext3.osumc.edu
91raweb108.refworks.com
92sc.vizientinc.com
93sdg-dev.cites.illinois.edu
94shib-d1.calnet.berkeley.edu
95shib-test2.gatech.edu
96srfseward1.rfsuny.org
97t2pguardian01.t2hosted.com
98topiawww1.webair.com
99trln-dev.trln.org
100trlnr610a.trln.org
101tshib02.ucmerced.edu
102ucommsrv4.unl.edu
103unknown-host.kennisnet.org
104vm-bs-158-38-213-170.cl.uninett.no
105vpn.cloudtricity.com
106vx26.ucsf.edu
107webmail.imleagues.com
#trackbackRdf ($trackbackUtils.getContentIdentifier($page) $page.title $trackbackUtils.getPingUrl($page))
  • No labels