Signature Reference Algorithm

Massimiliano Masi max at mascanc.net
Mon May 8 10:08:11 EDT 2017


Scott, 

Many thanks for the answer, but the class that you suggested is not really an 
easy read for a non-shibboleth guy. 

I see in the doExecute method about a “strategy” which I don’t doubt that make sense in your code, but actually I wonder if you have an easier approach (as it was before). 

I am just moving a product from an old opensaml 2 to the new opensaml 3, nothing more. 
I am not rewriting the logic! 


> Il giorno 08 mag 2017, alle ore 15:17, Cantor, Scott <cantor.2 at osu.edu> ha scritto:
> 
>> Which one is the suggested way to set the reference digest algorithm? The
>> commented one (through the SignatureSigningParameters) or through the
>> BasicSignatureSigningConfiguration?
> 
> The suggested approach is "use Shibboleth" or use something else off the shelf. The world doesn't need more IdPs in Java. The non-suggested approach is to look at the code used by Shibboleth, see org.opensaml.saml.common.profile.impl.PopulateSignatureSigningParameters
> 
> -- Scott
> 
> -- 
> To unsubscribe from this list send an email to dev-unsubscribe at shibboleth.net

--
Anger is a gift, http://www.mascanc.net/



More information about the dev mailing list