Skip to content

Update SAML config comments to reflect correct behavior for wantAssertionSigned#3991

Merged
duanemay merged 1 commit into
developfrom
want_assertions_signed_doc
Jul 23, 2026
Merged

Update SAML config comments to reflect correct behavior for wantAssertionSigned#3991
duanemay merged 1 commit into
developfrom
want_assertions_signed_doc

Conversation

@duanemay

Copy link
Copy Markdown
Member

No description provided.

Copilot AI review requested due to automatic review settings July 22, 2026 14:28

Copilot AI left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Updates the in-file uaa.yml documentation for the deprecated login.saml.wantAssertionSigned setting to reflect that it now only controls SP metadata (WantAssertionsSigned) and no longer changes SAML authentication verification/decryption behavior.

Changes:

  • Reword and reflow the YAML comments describing login.saml.wantAssertionSigned deprecation semantics.

Comment on lines +420 to +422
# Deprecated (78.13.0): only affects SP metadata WantAssertionsSigned. No longer affects authentication-
# behavior encrypted assertions are always decrypted, and authentication always requires a verifiable
# signature on the Response or on every Assertion after decryption, regardless of this setting.
@github-project-automation github-project-automation Bot moved this from Inbox to Pending Merge | Prioritized in Foundational Infrastructure Working Group Jul 23, 2026
@duanemay
duanemay merged commit f3b82a1 into develop Jul 23, 2026
27 checks passed
@duanemay
duanemay deleted the want_assertions_signed_doc branch July 23, 2026 14:03
@github-project-automation github-project-automation Bot moved this from Pending Merge | Prioritized to Done in Foundational Infrastructure Working Group Jul 23, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

Development

Successfully merging this pull request may close these issues.

3 participants