supporting IdP-initiated SSO only
Tom Scavo
trscavo at gmail.com
Sat Mar 16 15:59:19 EDT 2013
On Sat, Mar 16, 2013 at 2:33 PM, Ian Young <ian at iay.org.uk> wrote:
>
> On 16 Mar 2013, at 18:22, Tom Scavo <trscavo at gmail.com> wrote:
>
>>> That would mean it didn't support the SAML 2.0 Web Browser SSO Profile. Unsolicited responses are only an optional part of that profile.
>>
>> I don't think unsolicited responses are specified in the SAML 2.0 Web
>> Browser SSO Profile (which is why I sent to the question to this shib
>> list and not the saml-dev list).
Oh, okay, you're right. Maybe I should have sent the following
question to the saml-dev list:
Why does the SAML2 Metadata spec require at least one
SingleSignOnService element in every IDPSSODescriptor? AFAIK, an IdP
that supports SAML2 Web Browser SSO is NOT REQUIRED to accept
AuthnRequests.
Tom
More information about the dev
mailing list