IdP: Returning NameId encrypted in SAMLResponse Assertion
Peter Schober
peter.schober at univie.ac.at
Thu Oct 23 12:33:53 EDT 2014
* Suresh Babu <Suresh.Babu at ibsplc.com> [2014-10-23 11:09]:
> <saml2:NameID
> Format="urn:oasis:names:tc:SAML:1.1:nameid-format:unspecified"
> NameQualifier="https://b1035.ibsplc.com:8443/idp/shibboleth">_c6c2e2ea8bc2cbce298ebf895721bdf7</saml2:NameID>
If this is what you're getting, it's not encrypted. It's a transient
NameID for which you changed the format to make it unclear what it's
supposed to be for the recipient.
-peter
More information about the users
mailing list