You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
[fix] Configure a certificate and private key for each response (#227)
* Squash commits for saml_idp gem
* [feat] Allow SP config force signature validation (#16)
* Allow SP config force signature validation
* Allow SP config force signature validation
Tested with Slack with Authn request signature option
---------
Co-authored-by: zogoo <ch.tsogbadrakh@gmail.com>
* [feat] Don’t ignore certificates without usage (#17)
I have tested with live SAML SP apps and it works fine
* Unspecified certifciate from SP metadata
---------
Co-authored-by: zogoo <ch.tsogbadrakh@gmail.com>
* Try with proper way to update helper method (#19)
* Set minimum test coverage (#207)
* Set minimum test coverage to a very high value for testing
* Update minimum coverage to actual current value
* Try with proper way to update helper method
* Correctly decode and mock with correct REXML class
* Drop the min coverage
---------
Co-authored-by: Mathieu Jobin <majobin@mdsol.com>
Co-authored-by: zogoo <ch.tsogbadrakh@gmail.com>
* [feat] Collect request validation errors (#18)
* wip add error collector
* Fix type and rewrite request with proper validation test cases
* Lead error render decision to gem user
* Validate the certificate's existence before verifying the signature.
---------
Co-authored-by: zogoo <ch.tsogbadrakh@gmail.com>
* Support lowercase percent-encoded sequences for URL encoding (#20)
Co-authored-by: zogoo <ch.tsogbadrakh@gmail.com>
* [fix] Gem CI updates for latest versions (#22)
* Remove duplications
* Pre-conditions need to be defined in before section
* Le's not test logger in here
---------
Co-authored-by: zogoo <ch.tsogbadrakh@gmail.com>
* [fix] Allow IdP set reference ID for SAML response (#21)
* Pass ref id as Session Index
* Official Rails 8 is not released yet to RubyGem until that let's stick official older version
---------
Co-authored-by: zogoo <ch.tsogbadrakh@gmail.com>
* Support rails 8 for dev env (#23)
Co-authored-by: zogoo <ch.tsogbadrakh@gmail.com>
* Signable logic with given certificate information
* Update unit test with new test certificate
* Assertion builder with certificate attribute
* Response builder with ceritificate
* Use directly provided cert and pv key
* Remove config dependency from low layer logics
* Use correct attribute name
* Remove config dependency from low level logics
* Remove config dependency from low level logics and fix test
* Revert Proc approach
* Assertion flag should able switchable by application (#24)
Co-authored-by: zogoo <ch.tsogbadrakh@gmail.com>
* concurrent-ruby v1.3.5 has removed the dependency on logger (#27)
Co-authored-by: zogoo <ch.tsogbadrakh@gmail.com>
* MetadataBuilder uses custom configurator (#25)
Co-authored-by: Andrea Lorenzetti <64900248+andnoz@users.noreply.github.com>
---------
Co-authored-by: zogoo <ch.tsogbadrakh@gmail.com>
Co-authored-by: Mathieu Jobin <majobin@mdsol.com>
Co-authored-by: Massimo Zappino <99500013+mzappino-noz@users.noreply.github.com>
Co-authored-by: Andrea Lorenzetti <64900248+andnoz@users.noreply.github.com>
0 commit comments