mace-opensaml-users - RE: Unable to verify a signature
Subject: OpenSAML user discussion
List archive
- From: "Scott Cantor" <>
- To: <>
- Subject: RE: Unable to verify a signature
- Date: Wed, 31 Jan 2007 12:13:45 -0500
- Organization: The Ohio State University
> I'm trying to verify a Signature with a
> org.opensaml.xml.signature.SignatureValidator but using the latest
> revision from svn I can't find the class SignatureValidator (It was
> present in TP2). So what can i do ?
At a quick glance, I would guess that it was eliminated in favor of a trust
engine oriented approach. The use of the validator to simply verify a
signature using a known key (or even worse, a key from the signature) is
pathological, and basically worthless. I still have a validator in C++ but
it's largely stupid, so I may pull it myself.
TrustEngines are the way you supply external trust infrastructure to verify
signatures. I don't know if that stuff is documented yet. The class
hierarchy appears to have shifted a bit from the last time I looked at it
with more use of generics to refactor the base classes.
My best guess is the BasicX509SignatureTrustEngine class is probably the
equivalent of the old validator.
-- Scott
- Unable to verify a signature, laurent . dhaeyer, 01/31/2007
- RE: Unable to verify a signature, Scott Cantor, 01/31/2007
Archive powered by MHonArc 2.6.16.