Validating SAML signatures

Peter Schober peter.schober at univie.ac.at
Mon Nov 29 13:51:08 UTC 2021


* Max Spicer via users <users at shibboleth.net> [2021-11-29 14:17]:
> I have verified that our IdP successfully validates the signature in the
> authn requests when it has the correct key, and fails when given the "new"
> key. Can anyone recommend a tool / process to reproduce these results
> outside of the IdP?

FWIW, this wiki page documents a few tools to validate signatures with:
https://shibboleth.atlassian.net/wiki/spaces/CONCEPT/pages/928645443/MetadataCorrectness#MetadataCorrectness-SignatureVerification

-peter


More information about the users mailing list