この会話は、活動がないためロックされています。新しい投稿を作成してください。
この会話は、活動がないためロックされています。新しい投稿を作成してください。
Does anyone know if the SAML Authentication Handler supports multiple Signing Keys?
Thanks
解決済! 解決策の投稿を見る。
表示
返信
いいね!の合計
For now it is not supported. Assume it is supported how would you visualize which one to select based on that multiple keys?
表示
返信
いいね!の合計
Are you talking about having multiple SAMLs ??
You can have multiple configs for 'SAML Authentication Handler' here /system/console/configMgr
表示
返信
いいね!の合計
Multiple signing keys from the same IDP. I don't think it's a SAML configuration issue as much as it a back end capability to accept multiple signing keys from the same IDP.
表示
返信
いいね!の合計
For now it is not supported. Assume it is supported how would you visualize which one to select based on that multiple keys?
表示
返信
いいね!の合計
From our Security Engineering Group
Here is the basic flow:
Additionally, once a certificate is found, it could be flagged for some session period to become the default certificate for validation purposes which would help eliminate the need to perform the IF-ELSE checks each time.
表示
返信
いいね!の合計
Thanks for details. We store idpCertAlias as string & need to change to array to match your need. Sounds doable, can you please file a support request to track this enhancement?
表示
返信
いいね!の合計