Uploaded image for project: 'Rampart'
  1. Rampart
  2. RAMPART-285

Interoporability issues in SAML 2.0 implementation

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Resolved
    • Major
    • Resolution: Fixed
    • None
    • 1.5.1
    • rampart-trust
    • None

    Description

      In the current SAML 2.0 implementation, there are two places which cause some interoperability issues with other implementations.

      1. It should use generic SubjectConfirmationElement when processing the assertion.
      2. Attributes "NotBefore" and "NotOnOrAfter" should be set in a Conditions element. Currently it is set in the SubjectConfirmationData element, which defines validity period only for the Subject element, not the entire assertion.

      Attachments

        1. rampart-interop.patch
          7 kB
          Thilina Mahesh Buddhika

        Activity

          People

            shankar Selvaratnam Uthaiyashankar
            thilinamb Thilina Mahesh Buddhika
            Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: