Specifying prefixed namespace for SLO requests?
Curtis Lacy
clacy at lotame.com
Thu Apr 6 14:58:07 EDT 2017
Thanks for this info. I’ll follow up with them on what they’re sending.
Curtis
> On Apr 6, 2017, at 2:52 PM, Cantor, Scott <cantor.2 at osu.edu> wrote:
>
>> Hi, I'm trying to set up a Shibboleth 3.3 IdP, and having trouble processing the
>> logout requests from a particular SP. Once decrypted, the logout requests
>> look like this:
>
> That's a decrypted NameID, not the whole request. When you embed namespace usage in encrypted content, it's a basic requirement that you have to ensure the prefix(es) get declared either within the content or in the original message.
>
>> Is there a bean or property that I need to provide which defines this "saml"
>> prefix?
>
> No, the message is simply broken, and the SP has a bug. I can't imagine that's Shibboleth but if it is you should certainly file it.
>
> -- Scott
>
> --
> To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
--
The information transmitted in this email is intended only for the
person(s) or entity to which it is addressed and may contain confidential
and/or privileged material. Any review, retransmission, dissemination or
other use of, or taking of any action in reliance upon, this information by
persons or entities other than the intended recipient is prohibited. If you
received this email in error, please contact the sender and permanently
delete the email from any computer.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20170406/f53d1d48/attachment.html>
More information about the users
mailing list