How to validate SAMLToken(SAMLAuthenticationHandler) from outside aem | Community
Skip to main content
Diego_Fontan
October 16, 2015
Solved

How to validate SAMLToken(SAMLAuthenticationHandler) from outside aem

  • October 16, 2015
  • 2 replies
  • 853 views

Can someone provide any idea how to validate specific saml token(saml authentication handler) from outside AEM? 

Basically we have an external API which hit an SlingServlet in order to retrieve  AEM content information.  AEM it's integrated with SAML thru Saml Authentication Handler so API need to check saml token is valid or not.

This post is no longer active and is closed to new replies. Need help? Start a new post to ask your question.
Best answer by Sham_HC

If External application is saml enabled & you do not need to check the sso should take care of it automatically.  The other options are [1] if you follow that in my opinion you are mis using the purpose of SSO.

[1]

Saml response xml is stored in user profile node & make use of it to validate.

2 replies

Sham_HC
Sham_HCAccepted solution
October 16, 2015

If External application is saml enabled & you do not need to check the sso should take care of it automatically.  The other options are [1] if you follow that in my opinion you are mis using the purpose of SSO.

[1]

Saml response xml is stored in user profile node & make use of it to validate.

smacdonald2008
October 16, 2015

Here is a good Stackoverflow thread that talks about how to use Java to perform this task:

http://stackoverflow.com/questions/16311625/how-to-validate-ws-federation-saml-tokens-with-java-service-provider