Skip to Content.
Sympa Menu

mace-opensaml-users - Re: verify SAML assertions

Subject: OpenSAML user discussion

List archive

Re: verify SAML assertions


Chronological Thread 
  • From: "Tom Scavo" <>
  • To:
  • Subject: Re: verify SAML assertions
  • Date: Tue, 14 Nov 2006 08:08:51 -0500
  • Domainkey-signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=GktstBRUOKgU4UEeHocQmXz7zMhup3jE+GmicKNU04Azwv0/i7VuTI5XfThVmkve845sIi9yMbDD1+6GU6SddqD+qQfNoAEuCM4zKwpRASLdK+GkJz1RPLDxrAHO+5uaV2TYYLwvdbSZhLv/q1vFYYlCBc6W0BDPhyjJ8ec8nuo=

On 11/14/06, Manuel Ernstberger
<>
wrote:

is it possible to verify SAML assertions without using signatures?

Authentication and integrity might be provided at the transport level, yes.

Is there perhaps a possibility to compare two SAML assertions?

In general, no, I'm afraid not. Can you describe your use case, and
what you mean by "compare"?

Cheers,
Tom



Archive powered by MHonArc 2.6.16.

Top of Page