Page tree

The Shibboleth 2.x software has reached its End of Life and is no longer supported. This documentation is available for historical purposes only. See the IDP30 and SP3 wiki spaces for current documentation on the supported versions.

Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 5 Next »

Preparing JBoss for the Shibboleth Identity Provider

Version Requirements/Recommendations

  • JBoss AS 4 or greater
  • Java 5 is strongly recommended, Java 6 is not supported

Required Configuration Changes

  • None. JBoss AS will run the Shibboleth Identity Provider without change. If the JEMS installer was used to install JBoss AS, at least, at least the Tomcat service must have been installed.

Logging Configuration

The JBoss AS logging service is configured by means of the log4j.xml file located in the conf/ directory of your service configuration profile. To enable logging for the identity provider:

Add the following appender (log file location) definitions, replacing each $IDP_HOME$ instance with the path to your IdP home directory, after the last </appender> line

Logging Appender Definitions
<!-- IdP Audit Log -->
<appender name="IDP_AUDIT" class="org.jboss.logging.appender.DailyRollingFileAppender">
   <errorHandler class="org.jboss.logging.util.OnlyOnceErrorHandler"/>
   <param name="File" value="$IDP_HOME$/idp-audit.log"/>
   <param name="Append" value="true"/>
   <param name="DatePattern" value="'.'yyyy-MM-dd"/>

   <layout class="org.apache.log4j.PatternLayout">
      <param name="ConversionPattern" value="%d %-5p [%c] %m%n"/>
   </layout>
</appender>


<!-- IdP Access Log -->
<appender name="IDP_ACCESS" class="org.jboss.logging.appender.DailyRollingFileAppender">
   <errorHandler class="org.jboss.logging.util.OnlyOnceErrorHandler"/>
   <param name="File" value="$IDP_HOME$/idp-access.log"/>
   <param name="Append" value="true"/>
   <param name="DatePattern" value="'.'yyyy-MM-dd"/>

   <layout class="org.apache.log4j.PatternLayout">
      <param name="ConversionPattern" value="%d %-5p [%c] %m%n"/>
   </layout>
</appender>


<!-- IdP Process Log -->
<appender name="IDP_PROCESS" class="org.jboss.logging.appender.DailyRollingFileAppender">
   <errorHandler class="org.jboss.logging.util.OnlyOnceErrorHandler"/>
   <param name="File" value="$$IDP_HOME$/idp-process.log"/>
   <param name="Append" value="true"/>
   <param name="DatePattern" value="'.'yyyy-MM-dd"/>

   <layout class="org.apache.log4j.PatternLayout">
      <param name="ConversionPattern" value="%d %-5p [%c] %m%n"/>
   </layout>
</appender>

Add the following category definitions after the last </category> line

Logging Category Definitions
<category name="Shibboleth-Audit">
   <priority value="CRITICAL" />
   <appender-ref ref="IDP_AUDIT"/>
</category>


<category name="Shibboleth-Access">
   <priority value="CRITICAL" />
   <appender-ref ref="IDP_ACCESS"/>
</category>


<category name="edu.internet2.middleware.shibboleth">
   <priority value="INFO" />
   <appender-ref ref="IDP_PROCESS"/>
</category>
  • No labels