Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

The examples shown are not specific to any particular profile configuration.

Expand
titleCommon
Include Page
ProfileConfiguration-Common
ProfileConfiguration-Common
Expand
titleAuthentication
Include Page
ProfileConfiguration-Authentication
ProfileConfiguration-Authentication
Expand
titleSAML
Include Page
ProfileConfiguration-SAML
ProfileConfiguration-SAML
Expand
titleSAML Artifact
Include Page
ProfileConfiguration-Artifact
ProfileConfiguration-Artifact
Expand
titleSAML Assertion
Include Page
ProfileConfiguration-SAMLAssertion
ProfileConfiguration-SAMLAssertion
Expand
titleProfile-Specific
Include Page
ProfileConfiguration-ShibbolethSSO
ProfileConfiguration-ShibbolethSSO

Notes

The default value of signResponses for this profile is "true", and it is unsafe to change this value. If you encounter a relying party that accepts an unsigned response that is transmitted via POST (and not artifact), you have identified an insecure implementation and should report the issue immediately while following your local security incident response process.