Thanks, just what I need. Just one more question (I hope ;).<div><br></div><div>In xmltooling/src/test/java/org/opensaml/xml/signature/EnvelopedSignatureTest.java</div><div>everything starts from SimpleXMLObject sxo = getXMLObjectWithSignature(), which</div>
<div>is the unsigned message envelope in my case. I have that parsed as a Document,</div><div>but am stuck on how to marshal that, and to what. Test isn't very easy to follow due </div><div>to deep nesting.</div><div>
<br></div><div>I found a SAML1.1 EnvelopeBuilder but this needs to be SAML 2.0. Or is XMLObjectBuilder</div><div>what I need in this case?</div><div><br></div><div>Please pardon the newbie questions; still finding my way around OpenSAML and</div>
<div>REALLY appreciate the help!! Thanks!</div><div><br><div class="gmail_quote">On Sat, Oct 29, 2011 at 9:36 PM, Cantor, Scott <span dir="ltr"><<a href="mailto:cantor.2@osu.edu">cantor.2@osu.edu</a>></span> wrote:<br>
<blockquote class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex;"><div class="im">On 10/29/11 7:40 PM, "Brad Cox" <<a href="mailto:bradjcox@gmail.com">bradjcox@gmail.com</a>> wrote:<br>
<br>
>Scott, when you spoke of "signing the whole document", do you mean giving<br>
>the soap envelope an id and signing the envelope?<br>
<br>
</div>No, I mean URI="".<br>
<br>
Using an ID implies that you have code in place to prevent wrapping<br>
attacks. We do for SAML. You wouldn't for SOAP, and none of the code<br>
you're working with will either.<br>
<font color="#888888"><br>
-- Scott<br>
</font><div><div></div><div class="h5"><br>
--<br>
To unsubscribe from this list send an email to <a href="mailto:dev-unsubscribe@shibboleth.net">dev-unsubscribe@shibboleth.net</a><br>
</div></div></blockquote></div><br><br clear="all"><div><br></div>-- <br>Cell: 703-594-1883<br>Blog: <a href="http://bradjcox.blogspot.com">http://bradjcox.blogspot.com</a><br>Web: <a href="http://virtualschool.edu">http://virtualschool.edu</a><br>
Manassas VA 20111<br><br>
</div>