Key resolver in Decryptor

Cantor, Scott cantor.2 at osu.edu
Mon Mar 2 09:44:23 EST 2015


On 3/2/15, 9:14 AM, "Sandy" <sundeep.nitw at gmail.com> wrote:

>True. Even the peer of EncryptedKey isn't <ds:KeyInfo>, but directly the 
><ds:X509Data> element. It didn't sound valid. Am I correct in 
>understanding that the validity of the XML is governed by the XMLENC 
>specification rather than SAML?

Yes. But there are profiles in SAML for how to use XMLENC and not 
following them pretty much ensures lack of interop.

-- Scott



More information about the dev mailing list