Disable assertion encryption

Ramkumar Ramsubbu ramkumar.ramsubbu.consultant at nielsen.com
Fri Sep 25 12:08:41 UTC 2020


Thanks Peter,

I just passed part of the relaying party.xml here. I am attaching the full
xml here. If you check relaying party id XXXXXXXXXX, i have set the
p:encryptAssertions="false"

Still saml response gets encrypted.

Any pointers will help us. Thanks in advance.

Thanks,
Ramkumar Ramasubbu
CPS



On Fri, Sep 25, 2020 at 1:54 PM Peter Schober <peter.schober at univie.ac.at>
wrote:

> * Ramkumar Ramsubbu <ramkumar.ramsubbu.consultant at nielsen.com>
> [2020-09-24 19:30]:
> > I am new to Shibboleth SSO. We have version 3.3.2 IDP installed.
>
> Then you have some updating to do.
>
> > Our SP has requested to disable the saml response. We tried the
> > below settings in the relaying-party.xml. But still we can see the
> > SAML response is encrypted in the browser.
>
> p:encryptAssertions="false" works as expected.
> But that the config snippet you posted isn't well-formed XML
> (Cf. the archive copy at
> http://shibboleth.net/pipermail/users/2020-September/048174.html )
> maybe that prevented it from even being loaded?
>
> -peter
> --
> For Consortium Member technical support, see
> https://wiki.shibboleth.net/confluence/x/coFAAg
> To unsubscribe from this list send an email to
> users-unsubscribe at shibboleth.net
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20200925/28ea6756/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: relying-party (1).xml
Type: text/xml
Size: 4090 bytes
Desc: not available
URL: <http://shibboleth.net/pipermail/users/attachments/20200925/28ea6756/attachment.xml>


More information about the users mailing list