<html>
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
  </head>
  <body text="#000000" bgcolor="#FFFFFF">
    <p><br>
    </p>
    <br>
    <div class="moz-cite-prefix">On 10/31/18 2:05 PM, Binh Pham wrote:<br>
    </div>
    <blockquote type="cite"
cite="mid:CAK903wOnnSDJQxDhr5GfqqFEc3jJ7OV0_HPGgaQ7+94PJ8SeTQ@mail.gmail.com">
      <div dir="ltr">
        <div dir="ltr">The only question I have left is there away to
          tell the signature object to don't break the signature value
          block into multiple line?</div>
      </div>
    </blockquote>
    You can try setting system property
    'org.apache.xml.security.ignoreLineBreaks' to 'true'.  This part of
    signing is totally under the control of the Santuario library.  So
    if that property doesn't do it, then I doubt there is a way.<br>
    <br>
    We actually do already make a best effort attempt to set this during
    OpenSAML library init, i.e. when you call
    InitializationService.initialize().  But it's possible that you're
    doing something with Santuario that's causing the above system
    property to be evaled before that, making our init ineffective in
    that regard.  <br>
    <br>
    <br>
    <blockquote type="cite"
cite="mid:CAK903wOnnSDJQxDhr5GfqqFEc3jJ7OV0_HPGgaQ7+94PJ8SeTQ@mail.gmail.com">
      <div dir="ltr">
        <div dir="ltr">
          <div class="gmail_default" style="font-family:georgia,serif">At
            the end of each line, it has "&#xd;" by default. I was
            wondering if that would affect the validation anyhow.<br>
          </div>
        </div>
      </div>
    </blockquote>
    <br>
    In general it doesn't affect validation.  The Signature- and
    DigestValue content is just Base64-encoded data and line-breaks are
    common there.  But I guess it depends on what software is going to
    validate the signature.  The ones I know about wouldn't care about
    line-breaks.<br>
    <br>
    <br>
  </body>
</html>