pairwise-id with "+" character

Martin Haase Martin.Haase at DAASI.de
Wed Nov 7 05:59:51 EST 2018


Hi list,

this is IdP 3.4.1. I've combined a new pairwise-id together with a
storedId Dataconnector. What I get is a pairwise ID like this:

        <saml2:Attribute FriendlyName="pairwise-id"
            Name="urn:oasis:names:tc:SAML:attribute:pairwise-id"
NameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:uri">
           
<saml2:AttributeValue>fXvbChZejOSNUm2ASCSNj+D+HYA=@daasi.de</saml2:AttributeValue>
        </saml2:Attribute>

What I read from the new Comittee draft, for pairwise-IDs, only
Alphanumerical and "-" and "_" are allowed, however this very example
value ended up having a "+". Would it also occur with the OOTB
computedId Dataconnector? For an immediate fix, would it be safe to just
search/replace all "+"es with "-"es? And if this is a bug, would you fix
it the same way?

Cheers,

Martin

-- 
Dr. Martin Haase, Solutions Engineer

DAASI International GmbH        
Europaplatz 3                   
D-72072 Tübingen                
Germany                    

phone: +49 7071 407109-0
fax:   +49 7071 407109-9  
email: martin.haase at daasi.de
web:   www.daasi.de

Sitz der Gesellschaft: Tübingen
Registergericht: Amtsgericht Stuttgart, HRB 382175
Geschäftsleitung: Peter Gietz



More information about the users mailing list