| 
 | 
        
        
            
    
        
        
            11/3/2016 11:55:12 AM
         
        
        
            adapter configuration was updated to support for customization
of HttpClient used for key retrieval similarly to OIDC. Further, it is
now possible to specify several static public keys for signature
verification in saml-client.xml. 
        
         
     
    
 
 | 
        
        
            | 
 | 
        
        
            
    
        
        
            11/2/2016 2:54:43 PM
         
        
        
            (hardcoded at the moment) 
        
         
     
    
 
 | 
        
        
            
    
        
        
            11/2/2016 12:33:22 PM
         
        
        
            <Extensions>
Some SP clients might be confused by using a standard SAML protocol tag
<Extensions> which is used for signed REDIRECT binding messages to
specify signing key ID. To enable the interoperability, generation of
the tag is disabled by default and can be enabled for individual
clients. 
        
         
     
    
 
 | 
        
        
            
    
        
        
            11/2/2016 5:46:06 AM
         
        
        
            to POST binding, signature of SAML protocol message sent using
REDIRECT binding is contained in query parameters and not in the
message. This renders <dsig:KeyName> key ID hint unusable. This commit
adds <Extensions> element in SAML protocol message containing key ID so
that key ID is present in the SAML protocol message. 
        
         
     
    
 
 | 
        
        
            | 
 | 
        
        
            
    
        
        
            11/4/2016 6:05:35 AM
         
        
        
            adapter
and
KEYCLOAK-1881 Extract httpclient configuration from AdapterConfig 
        
         
     
    
 
 | 
        
        
            | 
 | 
        
        
            | 
 |