Skip to Content.
Sympa Menu

mace-opensaml-users - RE: [OpenSAML] Using Holder of Key with Digital Signature

Subject: OpenSAML user discussion

List archive

RE: [OpenSAML] Using Holder of Key with Digital Signature


Chronological Thread 
  • From: "Scott Cantor" <>
  • To: <>
  • Subject: RE: [OpenSAML] Using Holder of Key with Digital Signature
  • Date: Tue, 28 Jul 2009 15:54:49 -0400
  • Organization: The Ohio State University

> I am trying to create an AuthenticationRequest with openSAML. this request
> is signed using client private key and contains Holder-of-Key.

Holder of Key is a term related to assertion subject confirmation, not
requests.

> I am able to
> generate the request but signature validation is failing on other side.

That's not something that can be debugged looking at code, you have to log
the octets being digested by the xmlsec library and compare them to see
what's different and where the problem's coming from.

-- Scott





Archive powered by MHonArc 2.6.16.

Top of Page