Skip to Content.
Sympa Menu

mace-opensaml-users - Caching Assertions with the OneTimeUse Condition

Subject: OpenSAML user discussion

List archive

Caching Assertions with the OneTimeUse Condition


Chronological Thread 
  • From: Arnout Engelen <>
  • To:
  • Subject: Caching Assertions with the OneTimeUse Condition
  • Date: Fri, 29 Jun 2007 14:01:23 +0200

Hi,

saml-core defines, on page 24:

To support the single use constraint, a relying party should maintain a cache of the assertions it has processed containing such a condition. Whenever an assertion with this condition is processed, the cache should be checked to ensure that the same assertion has not been previously received and processed by the relying party.

How can the relying party tell, in general, whether the incoming assertion is a duplicate of a previously received and processed assertion, rather than a fresh one that happens to contain the same information?


Arnout



Archive powered by MHonArc 2.6.16.

Top of Page