Log in not possible with certain edu-ID

This post may be a duplicate of Login error with SWITCH edu-ID. However, the topic was not closed there.
I cannot login using my edu-ID account from my university (FHNW). If I use the identity as FHNW staff Renkulab logs an error:
We are sorry…
Invalid signature in response from identity provider.

The edu-ID login prints:
EduID message
Fehler: Stale request
Date: 2024-09-05 08:14:59.605 UTC
IP: xxx.xxx.xxx.xxx ← deleted due to data protection
User Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/128.0.0.0 Safari/537.36
Session ID: 69A7E4272E8B4EAE172BC2B49A7C8AF1
Active SP sessions:

However, log in as private person works.

Thanks for your help which is realy appreciated.

I am looking into this. Can you tell me how you created the “private person” identity? I only have one identity and cannot find any information on how to add an identity that is not affiliated with an institution. (This is a red herring.)

It looks like there is an issue with the certificates stored in RenkuLab. The certificate for FHNW is either out of date, or needs to be added to the system. Thanks for bringing this to our attention; it should be resolved soon.

as cramakri mentioned, some EduID providers have special certificates that need to be manually configured for EduID to work and FHNW was not yet configured on Renkulab.

I’ve just added the FHNW certificate there, so this should work now.
As I don’t have an FHNW EduID account, I can’t test this myself, but would be great if you could let me know if this works now?

Hi ralf.grubenmann and cramakri

It works now. I can log in with my FHNW employee account. Thank you very much! Some of my colleagues are interested in using Renkulab for their lectures. So they and their students can now use the edu-ID as well without the need of a second log in.

Glad to hear it’s working!

yes, every FHNW EduID account should work now.