Define a relying party profile for AuthnRequestsSigned="true"

Peter Schober peter.schober at univie.ac.at
Thu Feb 25 11:44:12 EST 2016


* Karla Borecky <kborecky at smith.edu> [2016-02-25 17:37]:
> I am working with a colleague to configure Banner 8 ssomanager. Their
> metadata specifies
> 
>   AuthnRequestsSigned="true"

The SP claims it will (always) sign the authn requests it generates
(sent to IDPs), allowing IDPs to treat unsigned authn requests
(claiming to be) from that SP differently (probably discarding them?).

So there should be nothing to do for you on the IDP side, AFAIU.
-peter


More information about the users mailing list