Class 3 ssl certificate for SAML 2.0 federation

Kunal Shah ks186033 at gmail.com
Mon Oct 22 05:08:26 EDT 2018


Hi,

For one of setups we are using SAML 2.0 federations. The CISO has made
a mandate that for all certificate requirements we use Class 3
certificates issued by third party CA.

I don't see any need for this. Especially when it is going to impact
the budget of our project. We are planning to submit an exception
request to the same. Can you please point me to some material that
helps me building my case?

I see SAML 2.0 specification. However, it does not mandate use of
Class 3 certificates, I am not finding any point that can help me make
my case stronger.

Regards
Kunal Shah


More information about the users mailing list