SAML Assertion signing and ecryption

Sam Jacob skjacob at gmail.com
Thu Dec 8 12:41:08 EST 2016


The IDP wants to sign and encrypt the Assertion.
But the SP metadata we provided contains only one Key and there's no "use"
attrbiute.

1. can they use the same key for signing and encryption?
2. we use the metadata generator to generate the metadata file. what
changes needs to be made in the application override in shibboleth2.xml, so
that it generates a separate key for signing and encryption?

thanks
-- 
Sam Jacob
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20161208/33144c90/attachment.html>


More information about the users mailing list