-
Type:
Story
-
Status: Closed
-
Priority:
Minor
-
Resolution: Completed
-
Affects Version/s: 7.1.X
-
Fix Version/s: 7.1.X
-
Component/s: Application Security > SAML
-
Branch Version/s:7.1.x
-
Backported to Branch:Committed
-
Epic Link:
-
Git Pull Request:
All features and fixes we shipped with Liferay Connector to SAML 2.0 v5.0.0 for DXP 7.2 should be backported to 7.1.x.
Released in 4.1.0 for DXP 7.1.
The 4.1.0 version of the application for Liferay DXP brings some long-awaited improvements:
- Liferay DXP acting as a Service Provider (SP) can now connect to multiple Identity Providers (IdP).
- Developers have an extension point for customizing which Identity Providers to users can use to sign in.
- Support for other Signature Algorithms (like SHA-256)
- Signature method algorithm URL’s can now be blacklisted from the metadata (for example, disabling SHA-1: http://www.w3.org/2000/09/xmldsig#rsa-sha1)
Backported changes: https://issues.liferay.com/issues/?jql=labels+%3D+liferay-connector-to-SAML-2.0-4.1.0