mace-opensaml-users - RE: [OpenSAML] Unable to extract SAML token
Subject: OpenSAML user discussion
List archive
- From: "Scott Cantor" <>
- To: <>
- Subject: RE: [OpenSAML] Unable to extract SAML token
- Date: Thu, 31 Jul 2008 10:50:57 -0400
- Organization: The Ohio State University
> I am facing an issue with extracting SAML token (signed one). I am using
> SAML 1.0. My problem is - how do I refer to the saml token as the URI in
> ds:Reference element under the ds:Signature/ds:SignedInfo element ?
You can't, that's the problem with SAML 1.0. The token profile in WSS for
SAML 1.0 has specific rules for that (I think) and that's why they don't use
URI references in that case. Or maybe they just punted on SAML 1.0? Not
sure. IIRC you have to wrap the assertion in an STR and you reference that.
Anyway, my advice is don't use SAML 1.0.
-- Scott
- Unable to extract SAML token, sburnwal, 07/31/2008
- RE: [OpenSAML] Unable to extract SAML token, Scott Cantor, 07/31/2008
- Re: [OpenSAML] Unable to extract SAML token, Tom Scavo, 07/31/2008
- RE: [OpenSAML] Unable to extract SAML token, Scott Cantor, 07/31/2008
Archive powered by MHonArc 2.6.16.