Sending the SAMLReply/Assertion

Mak, Steve makst at upenn.edu
Mon Jul 12 13:54:15 UTC 2021


I have one client where we sign the assertion and they store the signed assertion for analysis. I think that's about the only thing you can retain.

On 7/12/21, 9:43 AM, "users on behalf of Peter Schober" <users-bounces at shibboleth.net on behalf of peter.schober at univie.ac.at> wrote:

    * Jan Vilhuber <JVilhuber at absolute.com> [2021-07-12 04:58]:
    > Another idea: Is there an SP API (Soap or otherwise) where I might
    > be able to get the saml assertion from the SP given a session Index?

    This (and the AssertionExport docs Steve shared) won't help, I think,
    as the decoded, decrypted assertion(s) you get from the SP contain(s)
    none of the things you're looking for (certificates or details about
    the crypto used).

    Other than that (i.e., for other purposes) it works fine.

    -peter
    -- 
    For Consortium Member technical support, see https://wiki.shibboleth.net/confluence/x/coFAAg
    To unsubscribe from this list send an email to users-unsubscribe at shibboleth.net



More information about the users mailing list