Uploaded image for project: 'Jira Data Center'
  1. Jira Data Center
  2. JRASERVER-71288

SAML authentication assertions and responses should be signed

XMLWordPrintable

    • 7
    • 19
    • We collect Jira feedback from various sources, and we evaluate what we've collected when planning our product roadmap. To understand how this piece of feedback will be reviewed, see our Implementation of New Features Policy.

      Some Identity providers like one login expect authentication requests/responses to be signed by Jira citing security vulnerability. This results in SAML response to throw errors

      <samlp:StatusMessage>Signature required</samlp:StatusMessage>

              Unassigned Unassigned
              svenkatachari shrivatsaa (Inactive)
              Votes:
              32 Vote for this issue
              Watchers:
              27 Start watching this issue

                Created:
                Updated: