Recent Safari update breaks some SPs ?
Cantor, Scott
cantor.2 at osu.edu
Wed Oct 26 13:12:17 EDT 2016
> But I'd also note that if it is a Safari problem, I think it would actually only
> break things and cause a problem for SPs that are *signing* AuthnRequests
> using the Redirect binding. That's not the norm, and so that is likely not a
> huge pool of problem candidates to start out with. And then: not all Mac
> users use Safari; not all users have upgraded yet; etc. So I wouldn't rule out
> Safari as the culprit just yet, based on lack of reports.
Other caveats: you'd need relay state containing actual URLs needing safe encoding to actually spot that kind of thing in the logs (Shibboleth SPs don't do that by default, and many other SPs don't either).
-- Scott
More information about the users
mailing list