Skip to content
This repository was archived by the owner on Sep 28, 2022. It is now read-only.

Commit d5079cf

Browse files
author
Dominik František Bučík
authored
Merge pull request #33 from dBucik/saml_metadata_checks
Saml metadata checks
2 parents 0e58108 + e15dadc commit d5079cf

File tree

2 files changed

+6
-3
lines changed

2 files changed

+6
-3
lines changed

perun-oidc-server-webapp/src/main/webapp/WEB-INF/user-context.xml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -561,8 +561,8 @@
561561

562562
<bean id="metadata" class="org.springframework.security.saml.metadata.CachingMetadataManager">
563563
<property name="defaultIDP" value="${saml.idp.defaultIdpEntityId}"/>
564-
<property name="refreshCheckInterval" value="60000"/>
565-
<property name="refreshRequired" value="false"/>
564+
<property name="refreshCheckInterval" value="3600000"/>
565+
<property name="refreshRequired" value="true"/>
566566
<constructor-arg name="providers">
567567
<list>
568568
<ref bean="idpMetadata"/>

perun-oidc-server/src/main/java/cz/muni/ics/oidc/saml/IdpMetadataBeans.java

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -38,7 +38,10 @@ public ExtendedMetadataDelegate idpMetadata(SamlProperties samlProperties,
3838
fsmp.setParserPool(parserPool);
3939
mp = fsmp;
4040
}
41-
return new ExtendedMetadataDelegate(mp, extendedMetadata);
41+
ExtendedMetadataDelegate emd = new ExtendedMetadataDelegate(mp, extendedMetadata);
42+
emd.setMetadataRequireSignature(false);
43+
emd.setMetadataTrustCheck(false);
44+
return emd;
4245
}
4346

4447
}

0 commit comments

Comments
 (0)