Ex: endpoint security handler error

Paul B. Henson henson at cpp.edu
Wed Apr 24 01:19:46 UTC 2024


On Tue, Apr 23, 2024 at 06:14:54PM -0700, IAM David Bantz wrote:

> The request was signed (though their metadata has
> AuthnRequestsSigned=“false”)

That just means the idp won't refuse to process an unsigned one, but I
vaguely recall that if a signed one still shows up it will process it as
signed, not just ignore the signature, regardless of the metadata
setting.


-- 
Paul B. Henson  |  (909) 979-6361  |  http://www.cpp.edu/~henson/
Operating Systems and Network Analyst  |  henson at cpp.edu
California State Polytechnic University  |  Pomona CA 91768


More information about the users mailing list