EngineBlock 4.7.0
EngineBlock is now a eXtensible Access Control Markup Language (XACML) Policy Enforcement Point (PEP).
If the metadata for a Service Provider specifies that a Policy Decision Point (PDP) should be consulted
then EB will send an Access Request to the PDP and enforce the result.
This release also completely removes Virtual Organization support.
If a /vo: part is passed in the URL EB will halt with an error.
Notable issues resolved with this release:
- Prod IdP allowed to login to Test SP when using a trusted_gateway #200
- Deprecate urn:oasis:names:tc:SAML:2.0:nameid-format:unspecified #96
- SR changes not reflected in metadata #53
- Use of IdP-specific endpoint by non-connected SPs #94
- Error pages show feedback information (timestamp, SP, IdP, etc) again.
- The Functional Tests of OpenConext Engine Test Stand now work again.
- Removed obsolete asset pipeline