<div dir="ltr"><span style="font-family:arial,sans-serif;font-size:13px">Hi All,</span><div style="font-family:arial,sans-serif;font-size:13px"><br></div><div style="font-family:arial,sans-serif;font-size:13px">I have a case where I have to validate the signature of the HTTP Redirect Binding. I could not find any better description or sample on how to do this with the OpenSAML library. However in this mailing list I found someone pointing to have a look at the SAML2HTTPRedirectDeflateSignatureSecurityPolicyRuleTest test case. There the SAML2HTTPRedirectDeflateSignatureRule is used to evaluate the built MessageContext. </div>
<div style="font-family:arial,sans-serif;font-size:13px">My question is, is there any other way to achieve the $subject other than using the SAML2HTTPRedirectDeflateSignatureRule ? The reason I need another solution is I have a limitation of creating the MessageContext because I cannot get the original HttpServletRequest object itself to where I do the signature validation. I'm looking for a solution like where I can do the signature validation only using the request query string. </div>
<div style="font-family:arial,sans-serif;font-size:13px"><br></div><div style="font-family:arial,sans-serif;font-size:13px">Any help is really appreciated</div><div style="font-family:arial,sans-serif;font-size:13px"><br>
</div><div style="font-family:arial,sans-serif;font-size:13px">Thanks you very much,</div><div style="font-family:arial,sans-serif;font-size:13px">-Suresh </div><div><br></div>-- <br>Suresh Attanayake<br><br>Blog : <a href="http://sureshatt.blogspot.com/" target="_blank">http://sureshatt.blogspot.com/</a> <br>
LinkedIn : <a href="http://www.linkedin.com/pub/suresh-attanayake/16/165/181" target="_blank">http://www.linkedin.com/pub/suresh-attanayake/16/165/181</a> <br>Twitter : <a href="http://twitter.com/sureshatt" target="_blank">http://twitter.com/sureshatt</a> <br>
</div>