The Shibboleth IdP V4 software has reached its End of Life and is no longer supported. This documentation is available for historical purposes only. See the IDP5 wiki space for current documentation on the supported version.

Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 3 Next »

This feature requires V4.1 of the software.

Namespace: urn:mace:shibboleth:2.0:resolver
Schema: http://shibboleth.net/schema/idp/shibboleth-attribute-resolver.xsd

Overview

The Decrypted AttributeDefinition decrypts values of input attributes to an output attribute. The encryption/decryption is based on a supplied utility class used elsewhere in the IdP called a DataSealer.

This is a utility component that may prove useful in support of use cases where data being resolved should be private to the IdP but stored elsewhere.

Configuring this definition requires adding at least one <InputAttributeDefinition> or <InputDataConnector> element and supplying a reference to a DataSealer with access to the key used to encrypt the input data.

Reference

  • No labels