Skip to Content.
Sympa Menu

mace-opensaml-users - RE: [OpenSAML] RE: SAML1.1 response signature validation fails but assertion signature validation passes

Subject: OpenSAML user discussion

List archive

RE: [OpenSAML] RE: SAML1.1 response signature validation fails but assertion signature validation passes


Chronological Thread 
  • From: "Scott Cantor" <>
  • To: "'Pantvaidya, Vishwajit'" <>, <>
  • Subject: RE: [OpenSAML] RE: SAML1.1 response signature validation fails but assertion signature validation passes
  • Date: Tue, 18 Nov 2008 12:50:44 -0500
  • Organization: The Ohio State University

> [Pantvaidya, Vishwajit] Using OxygenXML, signature verification of the
> following response failed.
> Then I tried to verify the assertion signature using Oxygen - since that
> part worked for me in the opensaml java code. So I removed the outer
> response and saml status elements, leaving just the assertion. I did not
> change any content within the assertion element - so this should not
> invalidate the original signature right? But even the assertion signature
> verification failed with OxygenXML. So is the OxygenXML saml response
> verification failure meaningful?

It means you changed the XML.

> The saml response I used is posted herewith:

That's pretty printed. There's no way that will work. You understand that a
single additional or missing whitespace character will break the signature,
right?

-- Scott





Archive powered by MHonArc 2.6.16.

Top of Page