Specified AssertionConsumerService Location as Relative Url
Surinaidu Majji
pioneer.suri at gmail.com
Tue Jun 30 10:58:49 EDT 2015
This has nothing to do with signing assertions, I don't know where you're
getting that.
>> If i understood your above mentioned point correctly, The below is the
code snippet indicates my understanding:
*The below is from relying-party.xml*
<ProfileConfiguration xsi:type="saml:SAML2SSOProfile"
signAssertions="always"
includeAttributeStatement="true"
*skipEndpointValidationWhenSigned = "true"*
/>
The highlighted *skipEndpointValidationWhenSigned* will not work only if i
provide signAssertions="never", It will work when signAssertions="always".
On Tue, Jun 30, 2015 at 7:04 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:
> On 6/30/15, 12:08 AM, "users on behalf of Surinaidu Majji" <
> users-bounces at shibboleth.net on behalf of pioneer.suri at gmail.com> wrote:
>
> >2) Will "skipEndpointValidationWhenSigned"work
> > if we don't signing assertions?
>
> This has nothing to do with signing assertions, I don't know where you're
> getting that.
>
> >3) May i know that, how to get the information about skipping the ACS URL
> check IDP-2.4? Can I post this same query to the dev at shib to get
> information about IDP-v3?
>
> No, because that's not what the dev list is for. The same property is
> supported in V3.
>
> -- Scott
>
> --
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20150630/b148a2b4/attachment-0001.html>
More information about the users
mailing list