Shibboleth encryption questions
Michael Dahlberg
olgamirth at gmail.com
Wed Mar 9 13:06:11 EST 2016
I've successfully migrated most of my V2 configuration to V3 (3.2.1). One
aspect that eludes me is encryption of the SAML response. It looks as if
entities that use the DefaultRelyingParty configuration have the SAML
response encrypted (entities that are in the overrides group do not have
the response encrypted). Can this me changed so that response is not
encrypted? Is this not recommended? Also, does this have anything to do
with the Cookie Encryption Key?
Finally, with regards to the Cookie Encryption Key, does this key have
anything to do with an IdP's SAML response to an SP?
Thanks,
Mike
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20160309/c12b7bd1/attachment-0001.html>
More information about the users
mailing list