IdPStatelessClustering wiki topic and MAC'd
Jim Fox
fox at washington.edu
Sat Nov 10 14:00:30 EST 2012
"Message Authentication Code", usually a one-way hash of the rest of the cookie, making it an HMAC.
Jim
On Nov 10, 2012, at 10:30 AM, Scott Koranda wrote:
> Hi,
>
> On this wiki page
>
> https://wiki.shibboleth.net/confluence/display/SHIB2/IdPStatelessClustering
>
> in the "Single Sign-On" section I read
>
> "The latter is not a great deal of work because most of the
> necessary functionality is available by combining the
> UsernamePassword login handler code with a DataSealer
> component to produce an encrypted cookie containing the user's
> identity, login time and method, and an expiration. The cookie
> is MAC'd to prevent forgery."
>
> I think I know what "MAC'd" means but would be grateful if
> somebody could spell it out so that I am sure.
>
> Thanks in advance,
>
> Scott K
> --
> To unsubscribe from this list send an email to dev-unsubscribe at shibboleth.net
More information about the dev
mailing list