diff options
| author | Benjamin Dauvergne <bdauvergne@entrouvert.com> | 2010-01-12 15:39:31 +0000 |
|---|---|---|
| committer | Benjamin Dauvergne <bdauvergne@entrouvert.com> | 2010-01-12 15:39:31 +0000 |
| commit | 56bd9e24052092de2cfe9562320a9291974366c5 (patch) | |
| tree | 29eb3bd66516ec4687ed8e73ecf6ac646f4b7bd1 /bindings/python | |
| parent | 21cc1bf7eeb82d4f5a0dc3e8ca7e73fc5562072d (diff) | |
| download | lasso-56bd9e24052092de2cfe9562320a9291974366c5.tar.gz lasso-56bd9e24052092de2cfe9562320a9291974366c5.tar.xz lasso-56bd9e24052092de2cfe9562320a9291974366c5.zip | |
Fix mitm attack using the AssertionConsumerURL property on requests
* lasso/saml-2.0/login.c: check that the URL is know before using it
* lasso/saml-2.0/provider.c lasso/saml-2.0/providerprivate.h:
add a function to check that an URL corresponds to a know
AssertionConsumer of the given provider.
Diffstat (limited to 'bindings/python')
0 files changed, 0 insertions, 0 deletions
