XMLSecTool validateSchema states ID is not a valid value for 'NCName' using MDA 0.7

Ian Young ian at iay.org.uk
Fri Apr 12 10:37:08 EDT 2013


On 12 Apr 2013, at 14:59, Dan McLaughlin <dmclaughlin at tech-consortium.com> wrote:

> It's all good here.  I've been doing the following as a workaround
> since I filed the original bug.
> 
> ID=FOOBARID`date "+%Y%m%d%H%M%S"`
> sed -i.bak "s/cacheDuration/ID=\"${ID}\" cacheDuration/g"
> /tmp/mda/federation/federation-metadata.xml

Neat.  I guess if you're signing outside the MDA using something like xmlsectool, then workrounds are comparatively simple.

> I was just trying to move to the new version yesterday to test fix and
> noticed the issue when xmlsectool tried to validate the metadata.

I think in general we'd prefer to have you using the latest release if you can.  It may not be perfect, but there haven't been a lot of bugs reported in the last year.  Seems like your previous workround should still get you by for now.

	-- Ian



-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4813 bytes
Desc: not available
Url : http://shibboleth.net/pipermail/dev/attachments/20130412/90d35b27/attachment.bin 


More information about the dev mailing list