Skip to Content.
Sympa Menu

mace-opensaml-users - RE: decoding public keys in metadata

Subject: OpenSAML user discussion

List archive

RE: decoding public keys in metadata


Chronological Thread 
  • From: "Paul Hethmon" <>
  • To: <>
  • Subject: RE: decoding public keys in metadata
  • Date: Sun, 5 Aug 2007 12:07:35 -0700

I'm not sure it requires a simpler API, just simply knowing what's
required. Maybe adding a few lines of info in the javadoc for the
SignObject method.

Paul

-----Original Message-----
From: Chad La Joie
[mailto:]

Sent: Sunday, August 05, 2007 1:35 PM
To:

Subject: Re: decoding public keys in metadata

Yeah, unfortunately I don't believe there is a general fix for this.

Two things get in the way: enveloping vs. enveloped signatures and
content referencing. Because of the various ways to mix and match
options only the developer knows when it's safe to marshall the object
tree.

I'll discuss with one of the other developers, tomorrow, whether there
is a way to detect the general, degenerate, case that occurs in SAML
protocol messages (always enveloped signatures). If so we could create
a simpler API that handled that case.





Archive powered by MHonArc 2.6.16.

Top of Page