<div dir="ltr"><div>Hello,</div><div><br></div>My team has a Shibboleth v3.2.1 instance deployed which we inherited not too long ago. I am still trying to ramp up on Shibboleth's configuration and I noticed the metadata/idp-metadata.xml configuration file references our x509 certificates without the "BEGIN/END CERTIFICATE" headers and footers. I've seen ADFS SAML 2.0 references contain the certificate headers and footers and I didn't see the OASIS SAML 2.0 specify whether the headers and footers were needed. Does Shibboleth require the headers and footers of the x509 certificates to be stripped for the metadata XML files? Ideally I'd like to leave the certificate headers and footers with the certificate reference.<br clear="all"><div><br></div>-- <br><div dir="ltr" class="gmail_signature" data-smartmail="gmail_signature"><div dir="ltr"><div><div dir="ltr">Respectfully,<div><br></div><div>Mike Lloyd</div><div>Innovation Specialist, 18F, <a href="http://cloud.gov" target="_blank">cloud.gov</a></div><div>g: mxplusb</div></div></div></div></div></div>