mace-opensaml-users - RE: [OpenSAML] How to Best Validate Signature in Redirect Profile
Subject: OpenSAML user discussion
List archive
- From: "Scott Cantor" <>
- To: <>
- Subject: RE: [OpenSAML] How to Best Validate Signature in Redirect Profile
- Date: Tue, 25 Aug 2009 14:26:00 -0400
- Organization: The Ohio State University
Deena Gurajala wrote on 2009-08-25:
> You can use the following method to decompress the incoming request.
Your code is just reimplementing the MessageDecoder framework that's already
in the library.
Signature verification, which was the original question, is a hugely complex
issue, since verification alone is still leaving out the trust question.
Verification alone relies on a Validator object, I think.
-- Scott
- How to Best Validate Signature in Redirect Profile, Robert Winch, 08/22/2009
- Re: [OpenSAML] How to Best Validate Signature in Redirect Profile, Deena Gurajala, 08/25/2009
- RE: [OpenSAML] How to Best Validate Signature in Redirect Profile, Scott Cantor, 08/25/2009
- Re: [OpenSAML] How to Best Validate Signature in Redirect Profile, Brent Putman, 08/25/2009
- RE: [OpenSAML] How to Best Validate Signature in Redirect Profile, Scott Cantor, 08/25/2009
- Re: [OpenSAML] How to Best Validate Signature in Redirect Profile, Deena Gurajala, 08/25/2009
Archive powered by MHonArc 2.6.16.