SP Certificate expiration
Cantor, Scott
cantor.2 at osu.edu
Thu Nov 19 09:30:14 EST 2015
On 11/19/15, 3:48 AM, "users on behalf of Asaf Peter" <users-bounces at shibboleth.net on behalf of Asaf.Peter at exlibrisgroup.com> wrote:
>Hello,
>
>I am implementing SAML SP in Tomact using Java openSaml.
Then this is basically a spec question. Please use the saml-dev list at OASIS for that kind of thing.
>
>I have generated a public key/private key certificate and use it to decrypt the SAML assertion returned from Shibboleth IDP.
>
>Will there be a problem when my certificate expires? Does the Shibboleth IDP check the SP certificate expiration date before it uses it to encrypt the assertion?
Shibboleth is not the only SAML implementation in the world. Some do and some don't. The original specification does not address that.
-- Scott
More information about the users
mailing list