[jboss-user] [Security & JAAS/JBoss] - Re: How is JBoss SSO SAML token been validated?

alllle do-not-reply at jboss.com
Tue Jul 15 15:52:06 EDT 2008


Just want to bump this thread as it is still not clear to me that when a federate server receives a SAML token, how does it know the URL to contact to in order to validate the token? The token itself only has the "issuer" ID, which is set in the context.xml file. The federate server wouldn't be able to know which URL it needs to contact based on that info...

View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=4164590#4164590

Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=4164590



More information about the jboss-user mailing list