Michal Sabo created CXF-7039: -------------------------------- Summary: JAX-RS Security SAML web SSO consumer service can not validate SAML response behind reverse proxy Key: CXF-7039 URL: https://issues.apache.org/jira/browse/CXF-7039 Project: CXF Issue Type: Bug Components: JAX-RS Security Reporter: Michal Sabo Fix For: 3.0.0-milestone2
Signed SAML2 Bearer assertions may not always have XML Signature KeyInfo elements available. The JAX-RS security code fails to validate such assertions but it should be able to *optionally* validate them without KeyInfo -- This message was sent by Atlassian JIRA (v6.3.4#6332)