Why is EncryptionMethod tied to a KeyDescriptor?

Nate Klingenstein ndk at signet.id
Tue Nov 8 16:49:33 UTC 2022


Random question for which I presume the answer is "legacy due to XML Encryption", but is there a particular reason why DigestMethod and SigningMethod are defined for a provider at the top level while EncryptionMethod is tied to the key?

https://docs.oasis-open.org/security/saml/Post2.0/sstc-saml-metadata-algsupport-v1.0-cs01.html

I'm bad at crypto,
Nate

--------
Signet, Inc.
The Art of Access ®

https://www.signet.id




More information about the users mailing list