Sergey Beryozkin created CXF-5424:
-------------------------------------

             Summary: JAX-RS Security Code can not validate signed SAML2 bearer 
assertions without KeyInfo
                 Key: CXF-5424
                 URL: https://issues.apache.org/jira/browse/CXF-5424
             Project: CXF
          Issue Type: Bug
          Components: JAX-RS Security
            Reporter: Sergey Beryozkin


Signed SAML2 Bearer assertions may not always have XML Signature KeyInfo 
elements available. The JAX-RS security code fails to validate such assertions 
but it should be able to *optionally* validate them without KeyInfo 



--
This message was sent by Atlassian JIRA
(v6.1#6144)

Reply via email to