Removing SAML1 and backchannel support from our IdP

Max Spicer max.spicer at york.ac.uk
Wed Sep 27 13:40:18 UTC 2023


Thanks for all your advice, Scott. That makes it much clearer.

Cheers,

Max

On Wed, 27 Sept 2023 at 13:24, Cantor, Scott <cantor.2 at osu.edu> wrote:

> > With all these changes in place, do I need to do anything else to
> > disable/prevent use of the Artifact profile with Browser SSO?
>
> No. Setting the property to false informs the IdP that requests for the
> artifact binding in an AuthnRequest can't be honored and eliminates the
> binding from the "outbound binding" collection that it iterates over when
> picking something to use.
>
> -- Scott
>
>
>
>
>
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/users/attachments/20230927/7d0b9512/attachment.htm>


More information about the users mailing list