Please note that the V3 release branch is now the previous stable release, with the current stable releases from the V4 branch.
Support for V3 will end on Dec 31, 2020.

V3.4 adds an official mechanism for querying the IdP's Metadata resolver.  This can be used as a debugging aid ("Is the IdP really seeing the metadata I think it is?") and also as a way of forcing specific entities into cache (which might be relevant for entities loaded via DynamicHTTPMetadataProvider or LocalDynamicMetadataProvider).

The underlying web interface, which is managed as an AdministrativeConfiguration, looks like this:


The same thing on the command line would be:

$ /opt/shibboleth-idp/bin/ -e

The parameters supported and their corresponding command line options are:

Query String

Command Line



--entityID, -e
RequiredEntityID to find metadata for

Only 1 may be present

Protocol to find metadata role for
Queries for SAML 1.1 role
Queries for SAML 2.0 role

The tool essentially reproduces the results that would ordinarily be produced during relying party lookup in any of the "protocol" flows.

