From 08bcef745bf880facb10ca74689d4769bfb67865 Mon Sep 17 00:00:00 2001 From: Frederic Peters Date: Wed, 29 Nov 2006 23:36:26 +0000 Subject: re-enabling saml2 signature check --- lasso/saml-2.0/logout.c | 1 - lasso/saml-2.0/profile.c | 1 - 2 files changed, 2 deletions(-) diff --git a/lasso/saml-2.0/logout.c b/lasso/saml-2.0/logout.c index 3717c154..2be4c7f9 100644 --- a/lasso/saml-2.0/logout.c +++ b/lasso/saml-2.0/logout.c @@ -249,7 +249,6 @@ lasso_saml20_logout_process_request_msg(LassoLogout *logout, char *request_msg) /* verify signatures */ profile->signature_status = lasso_provider_verify_signature( remote_provider, request_msg, "ID", format); - profile->signature_status = 0; /* XXX: signature check disabled for zxid */ if (format == LASSO_MESSAGE_FORMAT_SOAP) profile->http_request_method = LASSO_HTTP_METHOD_SOAP; diff --git a/lasso/saml-2.0/profile.c b/lasso/saml-2.0/profile.c index 3644053a..8dd52a97 100644 --- a/lasso/saml-2.0/profile.c +++ b/lasso/saml-2.0/profile.c @@ -227,7 +227,6 @@ lasso_saml20_profile_process_artifact_resolve(LassoProfile *profile, const char profile->remote_providerID); rc = lasso_provider_verify_signature(remote_provider, msg, "ID", LASSO_MESSAGE_FORMAT_SOAP); - rc = 0; /* XXX: check signature (disabled for zxid) */ profile->private_data->artifact = g_strdup( LASSO_SAMLP2_ARTIFACT_RESOLVE(profile->request)->Artifact); -- cgit