<html><head><meta http-equiv="Content-Type" content="text/html charset=us-ascii"></head><body style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space;">A vendor whose service I am trying to make rely on our IdP is requesting encrypted attributes in the SAML assertion:<div>
<!--StartFragment--><p class="MsoNormal"><blockquote type="cite"><span style="font-size:10.0pt;font-family:Arial;mso-bidi-font-family:
Arial">We will also want the attributes to be encrypted (on top of being
transmitted behind SSL). For a list of supported encryptions you can look at
the link below.</span></blockquote></p><div>but I find this statement at <a href="https://wiki.shibboleth.net/confluence/display/SHIB2/IdPXMLSigEnc">https://wiki.shibboleth.net/confluence/display/SHIB2/IdPXMLSigEnc</a> :</div><div><br></div><div></div><blockquote type="cite"><div><span style="color: rgb(51, 51, 51); font-family: Arial, Helvetica, FreeSans, sans-serif; font-size: 13.63636302947998px; line-height: 17.329545974731445px; background-color: rgb(255, 255, 255);">the IdP currently only supports the encryption of assertions and NameIDs, it does not support the encryption of attributes (though this will be added in the near future).</span></div></blockquote><div><span style="color: rgb(51, 51, 51); font-family: Arial, Helvetica, FreeSans, sans-serif; font-size: 13.63636302947998px; line-height: 17.329545974731445px; background-color: rgb(255, 255, 255);"><br></span></div><div><font color="#333333" face="Arial, Helvetica, FreeSans, sans-serif"><span style="font-size: 14px; line-height: 17px;">Am I SOL?</span></font></div><div><font color="#333333" face="Arial, Helvetica, FreeSans, sans-serif"><span style="font-size: 14px; line-height: 17px;"><br></span></font></div><div><font color="#333333" face="Arial, Helvetica, FreeSans, sans-serif"><span style="font-size: 14px; line-height: 17px;">David Bantz</span></font></div>
<!--EndFragment--></div></body></html>