Native ADFS support and signature verification

Cantor, Scott cantor.2 at osu.edu
Tue Sep 19 09:32:54 EDT 2017


> What exactly causes it to move along the chain? Would it only do that if it
> thinks there's no explicit key configured (i.e. a metadata problem as Rod
> suggests)?

It falls through if an explicit key verification fails, for whatever reasons. The wiki documents in exhaustive detail exactly what it does in each trust engine.

-- Scott



More information about the users mailing list