Sending the SAMLReply/Assertion
Mak, Steve
makst at upenn.edu
Mon Jul 12 13:54:15 UTC 2021
I have one client where we sign the assertion and they store the signed assertion for analysis. I think that's about the only thing you can retain.
On 7/12/21, 9:43 AM, "users on behalf of Peter Schober" <users-bounces at shibboleth.net on behalf of peter.schober at univie.ac.at> wrote:
* Jan Vilhuber <JVilhuber at absolute.com> [2021-07-12 04:58]:
> Another idea: Is there an SP API (Soap or otherwise) where I might
> be able to get the saml assertion from the SP given a session Index?
This (and the AssertionExport docs Steve shared) won't help, I think,
as the decoded, decrypted assertion(s) you get from the SP contain(s)
none of the things you're looking for (certificates or details about
the crypto used).
Other than that (i.e., for other purposes) it works fine.
-peter
--
For Consortium Member technical support, see https://wiki.shibboleth.net/confluence/x/coFAAg
To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net
More information about the users
mailing list