My org is trying to set up a federation server using the WAOP (v12.52.0108) and Tomcat (7.0.88) architecture in a 12.7 SSO environment. We have run into an issue when configuring a federation where when the SSO service URL is hit we just land at a (chrome) 404 page without getting an SSO prompt. If we hit the authentication URL pointing to the .jsp page in the affwebservices directory we get an SSO prompt from the authentication scheme and then dumped to a (chrome) 404 page. The one thing that came to mind on this issue is that tomcat isn't getting the cert from IIS in front of it. So we set up a keystore and imported the key in pks12 format into the tomcat jks store. No issues in the catalina log from this but the cert still isn't getting passed along and neither link works while still getting a 404 error.
Does anything come to mind when setting up this architecture that could be useful to double check as to why we can't get a .jsp page to load as well as the cert passed?
Here are the tomcat server.xml SSL connector settings being used:
<Connector port="8443"
protocol="org.apache.coyote.http11.Http11Protocol"
maxThreads="150"
SSLEnabled="true"
scheme="https"
secure="true"
clientAuth="false"
keystoreFile="D:\localapps\Apache Software Foundation\Tomcat 7.0\<org keystore name>.jks"
keystorePass="<keystore p/w>"
sslProtocol="SSL"
sslEnabledProtocols="TLSv1.2" />