Uploaded image for project: 'PicketLink'
  1. PicketLink
  2. PLINK-700

SAML 2.0 Unsollicited Response MUST NOT contain an InResponseTo attribute,

    XMLWordPrintable

Details

    • Bug
    • Resolution: Done
    • Major
    • PLINK_2.7.1.Final
    • PLINK_2.7.0.Final
    • SAML
    • None

    Description

      When Using a SAML V2 Idp Initiated Single Sign On Scenario, the SAML Reponse that gets generated by PicketLink contains an InResponseTo attribute.

      SAML Spec says "An unsolicited <Response> MUST NOT contain an InResponseTo attribute, "

      Attachments

        Issue Links

          Activity

            People

              psilva@redhat.com Pedro Igor Craveiro
              DidierRomelot Didier Romelot (Inactive)
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: