Uploaded image for project: 'jboss.org'
  1. jboss.org
  2. ORG-2862

Patch signing of SAML 2 responses in CAS

XMLWordPrintable

    • ORG-Sprint 7

      In ORG-2844 I realized that current SAML2 response signing (https://mojo.redhat.com/docs/DOC-102622#jive_content_id_SAML2_HTTP_Redirect_Binding_handling_compatible_with_PicketLink_client) is incorrect, because it sign responses like POST binding (in XML), not like Redirect binding (in query param). It worked with PicketLink client but not with Keycloak.
      We should patch Redirect binding (provide correct url params) or provide correct POST binding there.

              velias@redhat.com Vlastimil Eliáš
              velias@redhat.com Vlastimil Eliáš
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated:
                Resolved: