[prev in list] [next in list] [prev in thread] [next in thread] 

List:       shibboleth-users
Subject:    Re: [EXTERNAL] Re: AuthnRequests must be signed, but inbound message was not signed for IDP initiate
From:       Peter Schober <peter.schober () univie ! ac ! at>
Date:       2020-12-15 13:09:26
Message-ID: 20201215130926.f54h6f6qfehjeu7y () aco ! net
[Download RAW message or body]

* Abhishek Chouksey <abhishekchouksey10@gmail.com> [2020-12-15 12:20]:
> is there other way to solve this issue without modifying SP metadata?

The SP's metadata says that authn requests will always be signed.
By using (proprietary) IDP-initiated SSO there's no way to sign the (non-SAML) authn request.
Works as designed?
-peter
-- 
For Consortium Member technical support, see https://wiki.shibboleth.net/confluence/x/coFAAg
To unsubscribe from this list send an email to users-unsubscribe@shibboleth.net
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic