Clément Oudot
82b350a397
SAML: check NameID before extracting content
2010-06-02 09:08:33 +00:00
Clément Oudot
5444a9d3b4
SAML:
...
* Grab NameID from attribute request and find corresponding session (#2 )
* create a getSamlSession subroutine
2010-06-02 09:04:07 +00:00
Clément Oudot
a27464e277
SAML: process and validate attribute request ( #2 )
2010-06-02 08:09:59 +00:00
Clément Oudot
608e5e6b0a
Little corrections for make test
2010-06-01 15:39:18 +00:00
Clément Oudot
8fe3e749a3
SAML: catch attribute service URL ( #2 )
2010-06-01 15:34:08 +00:00
Clément Oudot
e8c514f794
SAML: set NameID in attribute query ( #2 )
2010-06-01 14:43:49 +00:00
Clément Oudot
8c14ba24bf
SAML: keep NameID in a SAML session to answer later attribute queries ( #2 )
2010-06-01 13:27:02 +00:00
Clément Oudot
6c1dc91ff0
SAML: set SessionNotOnOrAfter ( #81 )
2010-06-01 08:03:24 +00:00
Clément Oudot
ffeb9e3134
SAML: adjust HTTP-POST artifact binding ( #75 )
2010-05-31 15:46:41 +00:00
Clément Oudot
82ff667d57
SAML: add POST binding to SAML services ( #75 )
2010-05-28 10:35:24 +00:00
Clément Oudot
d1b4541a4d
SAML: check Destination attribute ( closes #33 )
2010-05-21 13:44:16 +00:00
Clément Oudot
58bec95435
SAML: map NameID formats to local session keys ( closes #67 )
2010-05-21 09:03:29 +00:00
Clément Oudot
0817e9918f
SAML: Option to configure default NameID format for a SP ( #67 )
2010-05-20 15:57:51 +00:00
Clément Oudot
f187851ba6
SAML: signatures on SSO/SLO messages issued from IDP ( #66 )
2010-05-20 13:08:07 +00:00
Clément Oudot
bc618ce075
SAML: check SSO/SLO messages signature in IDP ( #66 )
2010-05-20 10:25:00 +00:00
Clément Oudot
fdc84aac52
SAML: get SessionIndex before validating SLO request ( closes #64 )
2010-05-20 08:59:59 +00:00
Clément Oudot
ef3faf7d3e
SAML: eval SessionIndex call to prevent server error ( #64 )
2010-05-19 15:54:20 +00:00
Clément Oudot
df4198399f
* Add a new process step (authFinish) run after session store
...
* Create SAML session linked to real session to store NameID and SessionIndex, in order to use searchOn on them (will not force globalStorage to be compatible with searchOn)
* Control SessionIndex sent by IDP on a SLO request is now managed in SP to get the correct local session
* This solves issue #51
2010-05-17 16:02:21 +00:00
Clément Oudot
18bda4be2e
SAML: SLO request without SessionIndex are rejected ( #51 )
2010-05-17 12:44:26 +00:00
Clément Oudot
be742cfac6
SAML: use encrypt/decrypt to match session_index and session_id ( #51 )
2010-05-12 15:56:27 +00:00
Clément Oudot
c6dd158903
SAML: map SAML authentication context and authentication level ( #47 )
2010-05-12 15:14:07 +00:00
Clément Oudot
7f427610fe
SAML: typo in #53 correction
2010-05-12 12:56:16 +00:00
Thomas CHEMINEAU
14c23cea6d
fix #53 - use sendLogoutResponseToServiceProvider in IssuerDBSAML
2010-05-12 09:41:54 +00:00
Xavier Guimard
3844ba4192
"make tidy"
2010-05-12 04:04:10 +00:00
Clément Oudot
a04ff6e964
SAML:
...
* OneTimeUse is no more used in SP (#50 )
* Compile regexp for SAML URLs
* Move sendLogoutRequestToServiceProviders in _SAML
* In AuthSAML, do not predefined variables outside loops
2010-05-05 07:10:13 +00:00
Clément Oudot
5eb7895dac
SAML: manage SP conf key
2010-05-04 10:10:34 +00:00
Thomas CHEMINEAU
4f979bfe22
SAML: change error name to PE_IMG_OK and PE_IMG_NOK
2010-04-29 13:47:57 +00:00
Thomas CHEMINEAU
423541455b
SAML:
...
- Manage SOAP relay logout request;
- Fix a bug into info.tpl.
2010-04-29 13:39:26 +00:00
Xavier Guimard
1380d89865
New session explorer (not finished but useable) + some little tips
2010-04-28 19:57:16 +00:00
Thomas CHEMINEAU
f351ab97f6
SAML: work in progress to manage asynchronous SOAP logout requests
2010-04-28 17:16:38 +00:00
Thomas CHEMINEAU
54afc28e75
SAML: manage logout initiate by IDP
2010-04-27 15:11:53 +00:00
Thomas CHEMINEAU
873aa0c32e
SAML: generalizing and moving some functions to _SAML.pm
2010-04-26 17:06:49 +00:00
Clément Oudot
844a8807b0
SAML: set sessionIndex in assertion, to be compliant with simpleSAMLphp logout
2010-04-26 15:47:09 +00:00
Thomas CHEMINEAU
6ef67cc5ea
SAML: manage internationalization
2010-04-26 15:39:38 +00:00
Clément Oudot
975a585a51
SAML: create NameIdentifier only if it does not already exists
2010-04-26 14:30:54 +00:00
Thomas CHEMINEAU
a0378cd572
SAML: hide submit button when SLO info page is displayed
2010-04-26 13:10:04 +00:00
Clément Oudot
3441a05d2b
perltidy + better nameIdentifier construction in SSO phase (bug with latest Lasso verion and simpleSAMLphp)
2010-04-26 10:02:26 +00:00
Thomas CHEMINEAU
9c99b920f0
SAML: perform HTTP redirection in SAML context, when information is displayed to the user, to fix some problem during SAML logout response
2010-04-23 16:57:25 +00:00
Thomas CHEMINEAU
aac04dabdc
SAML: print information to user if many SP to logout throught HTTP-Redirect or HTTP-Post
2010-04-23 16:26:23 +00:00
Thomas CHEMINEAU
c2b642f172
SAML: continue work on sending logout request for all SP when an SP initiate a logout request
2010-04-23 15:18:08 +00:00
Thomas CHEMINEAU
cd8b59998b
SAML: first work on dispatching logout requests to SP during IDP SLO process
2010-04-22 17:01:37 +00:00
Thomas CHEMINEAU
c387e47e4f
SAML: retrieve session to be deleted then during a SLO initiate by a SP (maj lasso)
2010-04-22 13:00:32 +00:00
Thomas CHEMINEAU
8e08663576
SAML: no need to search for a valid session, when we are into issuerForAuthUser, we already have a valid one
2010-04-21 16:54:05 +00:00
Thomas CHEMINEAU
0eba588385
SAML: now delete session when logout request for authenticated user is correct
2010-04-20 15:49:48 +00:00
Thomas CHEMINEAU
6bfdad2d0b
SAML: manage logout into issuerForAuthUser
2010-04-20 15:31:21 +00:00
Thomas CHEMINEAU
005037df8c
SAML: first implementation of SLO initiated by a SP
2010-04-20 10:04:34 +00:00
Clément Oudot
a9cfdb9a64
SAML: mandatory attributes are now set in authentication response attribute statement
2010-04-16 08:55:56 +00:00
Clément Oudot
99b4c7fb72
SAML: attributes in authn response (work in progress)
2010-04-15 15:40:07 +00:00
Clément Oudot
4379adc014
SAML: reformate SP list to use EntityID as primary key
2010-04-15 14:42:17 +00:00
Clément Oudot
d9c4b44c4b
Add multiValuesSeparator configuration parameter
2010-04-15 11:15:36 +00:00