Skip to content

SAML 2 Assertion - Always require signature validation #7490

@fhanik

Description

@fhanik

In some use cases, privately exchanged credentials can justify a use case where encryption is validation of the assertion content.

The default behavior should be that signature is always required, as that is the most secure behavior.

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions