lajoie [Wed, 15 Oct 2008 19:28:35 +0000 (19:28 +0000)]
Fix typo in method signature - SIDP-233
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2783
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Wed, 15 Oct 2008 19:24:49 +0000 (19:24 +0000)]
Ensure WAR is regenerated and installed even - SIDP-237
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2782
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 9 Oct 2008 10:40:15 +0000 (10:40 +0000)]
Update to use Q for Eclipse maven plugin
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2781
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 9 Oct 2008 07:57:48 +0000 (07:57 +0000)]
Add RequiredValidUntil filter in to default config
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2780
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 7 Oct 2008 14:47:46 +0000 (14:47 +0000)]
Fix bug introduced with previous fix
Fix memory leak caused by chaining metadata provider incorrectly keeping references to old metadata (and thus not allowing it to be garbage collected)
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2779
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Mon, 6 Oct 2008 10:48:00 +0000 (10:48 +0000)]
Increase max memory available during tests
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2778
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Mon, 6 Oct 2008 07:13:03 +0000 (07:13 +0000)]
Back out changed related to resource backed metadata provider
Update README to note known metadata provider memory leak issue
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2777
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
putmanb [Sun, 5 Oct 2008 04:53:46 +0000 (04:53 +0000)]
SIDP-229: IdP Metadata changes to KeyDescriptor not fully flushed from IdP cache
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2776
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
putmanb [Sun, 5 Oct 2008 04:20:56 +0000 (04:20 +0000)]
SIDP-230: sanity check provided credentials
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2775
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sat, 4 Oct 2008 16:27:37 +0000 (16:27 +0000)]
Add IdP's metadata by default in order to support artifact
More robust metadata provider example using new resource backed provider
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2774
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 2 Oct 2008 16:39:45 +0000 (16:39 +0000)]
Change error message handling around authentication "failures". In specific make sure passive AuthN failures aren't recorded as errors.
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2773
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Wed, 1 Oct 2008 06:15:44 +0000 (06:15 +0000)]
Update release notes to reflect verified fix of SIDP-212
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2772
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
putmanb [Tue, 30 Sep 2008 00:25:11 +0000 (00:25 +0000)]
SIDP-216: Second of two signed sources of metadata fail after cache expiration
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2771
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
putmanb [Fri, 26 Sep 2008 19:41:44 +0000 (19:41 +0000)]
SIDP-228: Improve error reporting in SAML 2 profile handlers when no encryption key is resolveable for the peer entity ID
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2770
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
putmanb [Fri, 26 Sep 2008 19:16:47 +0000 (19:16 +0000)]
SIDP-27: Default relying-party.xml has SAML2-specific security policy rules included in SAML 1 security policies
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2769
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 23 Sep 2008 03:24:50 +0000 (03:24 +0000)]
Fix class cast exception
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2768
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Mon, 22 Sep 2008 13:17:50 +0000 (13:17 +0000)]
Fix typo
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2767
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Mon, 22 Sep 2008 07:09:23 +0000 (07:09 +0000)]
Attempted fix for SIDP-212, still needs to be tested
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2766
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Fri, 19 Sep 2008 12:18:16 +0000 (12:18 +0000)]
Include Shib JCE extensions in distribution - SIDP-215
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2765
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Fri, 19 Sep 2008 12:04:23 +0000 (12:04 +0000)]
Add optional, but on by default, check to ensure that IdP session cookie comes from the same IP to which it was issued - SIDP-225
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2764
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Fri, 19 Sep 2008 11:09:09 +0000 (11:09 +0000)]
Do not take information from request parameters which opens page up to XSS attacks - SIDP-226
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2763
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 16 Sep 2008 09:33:30 +0000 (09:33 +0000)]
Add version and supported specification information into JAR manifiest
Add version class that allows you to execute the library JAR and get the library version number
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2762
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Fri, 5 Sep 2008 15:09:13 +0000 (15:09 +0000)]
Excample Terracotta configuration file
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2761
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Wed, 3 Sep 2008 09:06:08 +0000 (09:06 +0000)]
Make installer script better handle upgrades
- detect if this particular installer hasn't been run before
- detect if the path given already exists
- copy over new bin and conf files without overwriting old ones
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2760
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Wed, 3 Sep 2008 07:00:21 +0000 (07:00 +0000)]
Remove some logging messages
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2759
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 2 Sep 2008 16:34:34 +0000 (16:34 +0000)]
Fix NPEs caused by getting the wrong message from the context
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2758
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 2 Sep 2008 11:08:43 +0000 (11:08 +0000)]
Add StoraeService implementaiton that produces events when objects are add or created.
Fix SIDP-206
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2757
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 31 Aug 2008 11:02:24 +0000 (11:02 +0000)]
Missed a file during last commit
Update attribute resolver so that entitlement does not rely on the static data connector default.
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2756
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 31 Aug 2008 09:01:22 +0000 (09:01 +0000)]
Fix SIDP-222
Update README notes to reflect config file changes needed during upgrade
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2755
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 31 Aug 2008 08:40:56 +0000 (08:40 +0000)]
Rework authentication and session management code:
- better tracking of JAAS Subject related properties (principals, public, and priviate credentials)
- better tracking for which authentication method is used for which principal
- no more reliance on the serlvet container session during any step of the authentication process
- raise an error when, during force authn, the authenticated principal is not the same as the previously authenticated principal - SIDP - 196
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2754
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 28 Aug 2008 09:31:38 +0000 (09:31 +0000)]
Fix up static SAML metadata provider and add it to the default config - SIDP-223
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2753
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 7 Aug 2008 10:44:28 +0000 (10:44 +0000)]
Upgrade to latest VT LDAP lib - SC-46
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2752
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 24 Jul 2008 08:26:38 +0000 (08:26 +0000)]
Remove most defaults from schemas - SIDP-204
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2751
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Wed, 23 Jul 2008 17:01:34 +0000 (17:01 +0000)]
yeah... save then commit
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2750
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Wed, 23 Jul 2008 17:00:49 +0000 (17:00 +0000)]
Update release notes
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2749
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Wed, 23 Jul 2008 16:47:21 +0000 (16:47 +0000)]
Add bouncy castle to the jars included on the installer classpath - SIDP-214
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2748
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sat, 19 Jul 2008 07:17:57 +0000 (07:17 +0000)]
Remove duplicated dependencies
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2747
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
putmanb [Fri, 18 Jul 2008 22:09:25 +0000 (22:09 +0000)]
Address SIDP-209: Enforce metadata SPSSODescriptor/@AuthnRequestsSigned on SAML 2 SSO profile handler.
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2746
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
rdw [Wed, 16 Jul 2008 13:21:41 +0000 (13:21 +0000)]
https://bugs.internet2.edu/jira/browse/SIDP-172
add check for idp_home being set. Also put into native windows format.
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2745
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Wed, 16 Jul 2008 06:43:36 +0000 (06:43 +0000)]
Add method back in so that change for SIDP-203 does not constitute an API change
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2744
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 10 Jul 2008 10:35:53 +0000 (10:35 +0000)]
Add name identifiers and assertion IDs to audit log entry - SIDP-203
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2742
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 19 Jun 2008 06:03:10 +0000 (06:03 +0000)]
always add audience restriction to condition
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2741
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 19 Jun 2008 06:02:25 +0000 (06:02 +0000)]
Add relying paty as audience of assertions, SIDP-201
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2740
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 15 Jun 2008 08:36:04 +0000 (08:36 +0000)]
Create release notes docs like other projects and populate it with existing 2.1 changes
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2739
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 15 Jun 2008 08:21:08 +0000 (08:21 +0000)]
Make the session cookie secure if the IdP is accepting authn requests over a secure channel
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2738
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 15 Jun 2008 08:15:16 +0000 (08:15 +0000)]
Fix SIDP-199
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2737
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 15 Jun 2008 08:09:58 +0000 (08:09 +0000)]
Fix up logging message to be more clear when SP requires encryption on NameID but the IdP is unable to support it.
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2736
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Wed, 28 May 2008 07:59:40 +0000 (07:59 +0000)]
Fix NPE when message doesn't even manage to be decoded enough to construct a basic request context: SIDP-185
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2735
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Wed, 28 May 2008 07:51:56 +0000 (07:51 +0000)]
Ask for fully qualified host name during installation to address issue where people enter "localhost": SIDP-173
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2734
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Wed, 28 May 2008 07:47:02 +0000 (07:47 +0000)]
Add default security role so Tomcat stops bitching: SIDP-175
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2733
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 22 May 2008 13:21:23 +0000 (13:21 +0000)]
Fix SIDP-189
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2732
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Fri, 25 Apr 2008 06:08:40 +0000 (06:08 +0000)]
Fix MDC import statements
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2730
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 24 Apr 2008 07:31:15 +0000 (07:31 +0000)]
Make IdP session ID and principal name available to logging framerwork for inclusion in any message that occurs after session creation; SIDP-183
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2729
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Fri, 18 Apr 2008 07:47:13 +0000 (07:47 +0000)]
Add explicit option for support SessionNotOnOrAfter attribute in AuthnStatement; SIDP-165
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2728
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 17 Apr 2008 15:28:57 +0000 (15:28 +0000)]
Address SIDP-167
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2727
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 17 Apr 2008 15:25:49 +0000 (15:25 +0000)]
Fix typo; SIDP-169
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2726
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 17 Apr 2008 15:20:07 +0000 (15:20 +0000)]
Properly set useKeyTab property; SIDP-176
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2725
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 17 Apr 2008 15:05:10 +0000 (15:05 +0000)]
Note release attributes when including the attribute statement within the IdP; SIDP-181
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2724
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 17 Apr 2008 14:28:33 +0000 (14:28 +0000)]
Recreate release branch, now based on Maven
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/branches/REL_2@2722
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 17 Apr 2008 14:26:16 +0000 (14:26 +0000)]
Remove unspec nameid format
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2721
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Thu, 17 Apr 2008 12:54:19 +0000 (12:54 +0000)]
Add distro management configs
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2719
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 13 Apr 2008 11:28:48 +0000 (11:28 +0000)]
Fix file urls
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2718
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 13 Apr 2008 11:05:07 +0000 (11:05 +0000)]
Finish up build
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2717
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 13 Apr 2008 08:37:27 +0000 (08:37 +0000)]
Clean up assemblies
Correct project metadata in POM
First part of moving installer to new project layout
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2716
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sat, 12 Apr 2008 16:48:52 +0000 (16:48 +0000)]
correct groupId
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2715
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sat, 12 Apr 2008 16:45:50 +0000 (16:45 +0000)]
First part of mavenizing IdP
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2714
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Mon, 7 Apr 2008 17:13:22 +0000 (17:13 +0000)]
Use year macro in license header so I don't ever have to remember to change it
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2713
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 25 Mar 2008 07:05:41 +0000 (07:05 +0000)]
Fix up example config so that the scope isn't Ian's domain
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2712
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 18 Mar 2008 13:37:31 +0000 (13:37 +0000)]
Minor tweaks to default config
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2710
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 18 Mar 2008 08:14:14 +0000 (08:14 +0000)]
NPE when previous session + passive auth is used
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2705
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 18 Mar 2008 08:09:45 +0000 (08:09 +0000)]
Remove previous session handling from possible login handlers during forcen and passive criteria filtering
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2704
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 18 Mar 2008 08:00:40 +0000 (08:00 +0000)]
explicity set force and passive authentication flags
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2703
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 18 Mar 2008 05:54:02 +0000 (05:54 +0000)]
After filtering a request check to see if only previous session is available and the user doesn't have a session.
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2702
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sat, 15 Mar 2008 09:12:20 +0000 (09:12 +0000)]
Only set default authn method is one is given
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2701
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sat, 15 Mar 2008 09:10:54 +0000 (09:10 +0000)]
Fix NPE when use has an existing session but is logging into a new service for the first time
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2700
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sat, 15 Mar 2008 09:06:24 +0000 (09:06 +0000)]
Only set default authn method is one is given
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2699
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sat, 15 Mar 2008 09:02:36 +0000 (09:02 +0000)]
Be sure not to add null values to list
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2698
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sat, 15 Mar 2008 08:54:37 +0000 (08:54 +0000)]
Treat unspec authentication method as meaning "any"
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2697
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sat, 15 Mar 2008 07:17:51 +0000 (07:17 +0000)]
Moved supported name format determination code up into base SAML profile class
Treat unspec format appearing in the metadata to mean "any" just as if it had appeared in a NameIDPolicy
No longer need unspec encoders in resolver
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2696
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
cantor [Fri, 14 Mar 2008 17:42:53 +0000 (17:42 +0000)]
Adjust order of NameID encoders for transient IDs so the right 2.0 format gets used by default.
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2695
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
putmanb [Wed, 12 Mar 2008 18:46:30 +0000 (18:46 +0000)]
Change method signature to take SAML message context, rather than SAML message.
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2694
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
putmanb [Wed, 12 Mar 2008 18:30:50 +0000 (18:30 +0000)]
Implement/override methods for destination endpoint check.
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2693
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 11 Mar 2008 15:34:41 +0000 (15:34 +0000)]
doument some default properties
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2692
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 11 Mar 2008 15:22:26 +0000 (15:22 +0000)]
include ePTID examples from Ian
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2691
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 11 Mar 2008 15:13:17 +0000 (15:13 +0000)]
Don't load IdP MD by default
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2690
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 11 Mar 2008 13:07:25 +0000 (13:07 +0000)]
Force nameID encryption if NameIDPolicy requires it
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2689
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Tue, 11 Mar 2008 13:00:48 +0000 (13:00 +0000)]
Apply Scott's NameID patch
Fix SIDP-162
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2688
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Mon, 10 Mar 2008 18:51:39 +0000 (18:51 +0000)]
hex encode random bytes to get session ID
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2687
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Mon, 10 Mar 2008 18:36:49 +0000 (18:36 +0000)]
fix class name
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2686
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Mon, 10 Mar 2008 13:47:54 +0000 (13:47 +0000)]
fix typo
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2685
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Mon, 10 Mar 2008 07:58:49 +0000 (07:58 +0000)]
fix typo
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2684
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Mon, 10 Mar 2008 06:08:32 +0000 (06:08 +0000)]
fix typo
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2683
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 9 Mar 2008 18:23:27 +0000 (18:23 +0000)]
invoke endpoint selector after setting it all up
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2682
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 9 Mar 2008 07:55:54 +0000 (07:55 +0000)]
Place IdP entity ID into subject alt name of cert
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2681
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 9 Mar 2008 07:20:06 +0000 (07:20 +0000)]
Fix SIDP-160
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2680
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Fri, 7 Mar 2008 06:53:09 +0000 (06:53 +0000)]
Copy endorsed dir over to IdP home and use it for command line tools
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2679
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Wed, 5 Mar 2008 06:42:14 +0000 (06:42 +0000)]
Don't require name identifier in subject
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2678
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Mon, 3 Mar 2008 18:09:43 +0000 (18:09 +0000)]
Update release notes
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2676
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Mon, 3 Mar 2008 16:18:00 +0000 (16:18 +0000)]
Enabled fallback PKIX validation in default config
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2675
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca
lajoie [Sun, 2 Mar 2008 09:29:26 +0000 (09:29 +0000)]
Use shib servlet context attribute exporter as it is tolerant of operation outside a webapp container
git-svn-id: https://subversion.switch.ch/svn/shibboleth/java-idp/trunk@2674
ab3bd59b-922f-494d-bb5f-
6f0a3c29deca