Skip to content

Commit b6c8938

Browse files
author
Hans Hörberg
committed
Do NOT collect signature cert from the authn request and use for encryption.
1 parent e2b0461 commit b6c8938

File tree

1 file changed

+8
-8
lines changed

1 file changed

+8
-8
lines changed

src/saml2/sigver.py

Lines changed: 8 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -1070,17 +1070,17 @@ def encrypt_cert_from_item(item):
10701070
[pefim, ds])
10711071
if len(_elem) == 1:
10721072
_encrypt_cert = _elem[0].x509_data[0].x509_certificate.text
1073-
else:
1074-
certs = cert_from_instance(item)
1075-
if len(certs) > 0:
1076-
_encrypt_cert = certs[0]
1073+
#else:
1074+
# certs = cert_from_instance(item)
1075+
# if len(certs) > 0:
1076+
# _encrypt_cert = certs[0]
10771077
except Exception:
10781078
pass
10791079

1080-
if _encrypt_cert is None:
1081-
certs = cert_from_instance(item)
1082-
if len(certs) > 0:
1083-
_encrypt_cert = certs[0]
1080+
#if _encrypt_cert is None:
1081+
# certs = cert_from_instance(item)
1082+
# if len(certs) > 0:
1083+
# _encrypt_cert = certs[0]
10841084

10851085
if _encrypt_cert is not None:
10861086
if _encrypt_cert.find("-----BEGIN CERTIFICATE-----\n") == -1:

0 commit comments

Comments
 (0)