<?xml version="1.0" encoding="utf-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for codeBrane Blog</title>
	<atom:link href="http://codebrane.com/blog/?feed=comments-rss2" rel="self" type="application/rss+xml" />
	<link>http://codebrane.com/blog</link>
	<description>Software development and philosophical musings</description>
	<lastBuildDate>Thu, 21 Feb 2013 19:09:11 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.5.1</generator>
	<item>
		<title>Comment on pi@pi : getting a headless Raspberry Pi on the wifi network by James</title>
		<link>http://codebrane.com/blog/?p=2822&#038;cpage=1#comment-103308</link>
		<dc:creator>James</dc:creator>
		<pubDate>Thu, 21 Feb 2013 19:09:11 +0000</pubDate>
		<guid isPermaLink="false">http://codebrane.com/blog/?p=2822#comment-103308</guid>
		<description><![CDATA[Thanks a lot this solved a lot of problems.. I have spend a whole week trying to do what you showed me in seconds. :) really grateful]]></description>
		<content:encoded><![CDATA[<p>Thanks a lot this solved a lot of problems.. I have spend a whole week trying to do what you showed me in seconds. <img src='http://codebrane.com/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  really grateful</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Releasing the LDAP mail attribute from the Shibboleth IdP by Releasing the LDAP mail attribute from the Shibboleth IdP &#124; JANUA - Open Source Identity Management &#124; Scoop.it</title>
		<link>http://codebrane.com/blog/?p=2914&#038;cpage=1#comment-101624</link>
		<dc:creator>Releasing the LDAP mail attribute from the Shibboleth IdP &#124; JANUA - Open Source Identity Management &#124; Scoop.it</dc:creator>
		<pubDate>Fri, 08 Feb 2013 14:43:58 +0000</pubDate>
		<guid isPermaLink="false">http://codebrane.com/blog/?p=2914#comment-101624</guid>
		<description><![CDATA[[...] &#160; [...]]]></description>
		<content:encoded><![CDATA[<p>[...] &nbsp; [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Vodafone Sure Signal with Linksys WAG54GS router by REBOOTING AN OLD NETGEAR ROUTER REMOTELY &#124; COPIERNETEYE.COM</title>
		<link>http://codebrane.com/blog/?p=1349&#038;cpage=1#comment-99745</link>
		<dc:creator>REBOOTING AN OLD NETGEAR ROUTER REMOTELY &#124; COPIERNETEYE.COM</dc:creator>
		<pubDate>Thu, 03 Jan 2013 03:00:28 +0000</pubDate>
		<guid isPermaLink="false">http://codebrane.com/blog/?p=1349#comment-99745</guid>
		<description><![CDATA[[...] Vodafone Sure Signal with Linksys WAG54GS router
[...]]]></description>
		<content:encoded><![CDATA[<p>[...] Vodafone Sure Signal with Linksys WAG54GS router<br />
[...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Solving &#8220;the connection is already closed&#8221; error in Apache NMS by Alistair</title>
		<link>http://codebrane.com/blog/?p=2628&#038;cpage=1#comment-96820</link>
		<dc:creator>Alistair</dc:creator>
		<pubDate>Thu, 19 Jul 2012 09:49:17 +0000</pubDate>
		<guid isPermaLink="false">http://codebrane.com/blog/?p=2628#comment-96820</guid>
		<description><![CDATA[Are you using the same clientID that a producer is using? That&#039;s what generates that error. I saw it again last week and it was caused by the same condition, a consumer connecting with the same clientID as a producer.]]></description>
		<content:encoded><![CDATA[<p>Are you using the same clientID that a producer is using? That&#8217;s what generates that error. I saw it again last week and it was caused by the same condition, a consumer connecting with the same clientID as a producer.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Solving &#8220;the connection is already closed&#8221; error in Apache NMS by Margo</title>
		<link>http://codebrane.com/blog/?p=2628&#038;cpage=1#comment-96819</link>
		<dc:creator>Margo</dc:creator>
		<pubDate>Thu, 19 Jul 2012 09:28:32 +0000</pubDate>
		<guid isPermaLink="false">http://codebrane.com/blog/?p=2628#comment-96819</guid>
		<description><![CDATA[I&#039;m trying to set up a consumer - keep getting &#039;the connection is already closed&#039;  any ideas ?]]></description>
		<content:encoded><![CDATA[<p>I&#8217;m trying to set up a consumer &#8211; keep getting &#8216;the connection is already closed&#8217;  any ideas ?</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Guanxi Guard release by Erwin</title>
		<link>http://codebrane.com/blog/?p=1897&#038;cpage=1#comment-94028</link>
		<dc:creator>Erwin</dc:creator>
		<pubDate>Fri, 18 Nov 2011 13:46:22 +0000</pubDate>
		<guid isPermaLink="false">http://codebrane.com/blog/?p=1897#comment-94028</guid>
		<description><![CDATA[Thank you very much for both tutorial and patience.
I wish you luck in future work.]]></description>
		<content:encoded><![CDATA[<p>Thank you very much for both tutorial and patience.<br />
I wish you luck in future work.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Guanxi Guard release by Alistair</title>
		<link>http://codebrane.com/blog/?p=1897&#038;cpage=1#comment-94027</link>
		<dc:creator>Alistair</dc:creator>
		<pubDate>Fri, 18 Nov 2011 13:14:55 +0000</pubDate>
		<guid isPermaLink="false">http://codebrane.com/blog/?p=1897#comment-94027</guid>
		<description><![CDATA[I&#039;ve updated the localhost tutorial Erwin:
&lt;a href=&quot;http://codebrane.com/brane/node/10&quot; rel=&quot;nofollow&quot;&gt;Localhost tutorial&lt;/a&gt;
and you can now download a preconfigured localhost installation. There&#039;s a link to it from the end of the tutorial. I&#039;m not concentrating on Shibboleth any more as SAML2 is the important part now.]]></description>
		<content:encoded><![CDATA[<p>I&#8217;ve updated the localhost tutorial Erwin:<br />
<a href="http://codebrane.com/brane/node/10" rel="nofollow">Localhost tutorial</a><br />
and you can now download a preconfigured localhost installation. There&#8217;s a link to it from the end of the tutorial. I&#8217;m not concentrating on Shibboleth any more as SAML2 is the important part now.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Guanxi Guard release by Erwin</title>
		<link>http://codebrane.com/blog/?p=1897&#038;cpage=1#comment-94024</link>
		<dc:creator>Erwin</dc:creator>
		<pubDate>Fri, 18 Nov 2011 11:03:34 +0000</pubDate>
		<guid isPermaLink="false">http://codebrane.com/blog/?p=1897#comment-94024</guid>
		<description><![CDATA[I need to extract Assertion from Response id order to send it to external Authorisation Service, so it needs to be signed by IdP. If It&#039;s not implemented I will probably have to do it by myself later.

I was able to receive SAML response only on older version of your codes 
guanxi-idp-2.2.0
guanxi-wayf-1.2.8
guanxi-sp-engine-2.2.0
guanxi-sp-guard-2.2.0

Unfortunately I couldn&#039;t cope with the latest versions (problems described in previous posts). So I will really appreciate if you update your tutorial.]]></description>
		<content:encoded><![CDATA[<p>I need to extract Assertion from Response id order to send it to external Authorisation Service, so it needs to be signed by IdP. If It&#8217;s not implemented I will probably have to do it by myself later.</p>
<p>I was able to receive SAML response only on older version of your codes<br />
guanxi-idp-2.2.0<br />
guanxi-wayf-1.2.8<br />
guanxi-sp-engine-2.2.0<br />
guanxi-sp-guard-2.2.0</p>
<p>Unfortunately I couldn&#8217;t cope with the latest versions (problems described in previous posts). So I will really appreciate if you update your tutorial.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Guanxi Guard release by Alistair</title>
		<link>http://codebrane.com/blog/?p=1897&#038;cpage=1#comment-94022</link>
		<dc:creator>Alistair</dc:creator>
		<pubDate>Fri, 18 Nov 2011 09:24:33 +0000</pubDate>
		<guid isPermaLink="false">http://codebrane.com/blog/?p=1897#comment-94022</guid>
		<description><![CDATA[Hi Erwin,
I don&#039;t really see a need to sign the Assertion as it comes from the IdP and the IdP doesn&#039;t bring in Assertions from other IdPs, so the Assertion is covered by the top level Response signature.
You can indeed encrypt the Assertion in the Response but only for SAML2:
WEB-INF/guanxi_idp/config/spring/services/saml2/web-browser-sso-service.xml
set &quot;encryptAttributes&quot; to &quot;true&quot;
It will only encrypt the attributes if it has the Service Provider&#039;s public key though. This is the encryption key in the SP&#039;s metadata which the IdP has.]]></description>
		<content:encoded><![CDATA[<p>Hi Erwin,<br />
I don&#8217;t really see a need to sign the Assertion as it comes from the IdP and the IdP doesn&#8217;t bring in Assertions from other IdPs, so the Assertion is covered by the top level Response signature.<br />
You can indeed encrypt the Assertion in the Response but only for SAML2:<br />
WEB-INF/guanxi_idp/config/spring/services/saml2/web-browser-sso-service.xml<br />
set &#8220;encryptAttributes&#8221; to &#8220;true&#8221;<br />
It will only encrypt the attributes if it has the Service Provider&#8217;s public key though. This is the encryption key in the SP&#8217;s metadata which the IdP has.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Guanxi Guard release by Erwin</title>
		<link>http://codebrane.com/blog/?p=1897&#038;cpage=1#comment-94021</link>
		<dc:creator>Erwin</dc:creator>
		<pubDate>Fri, 18 Nov 2011 09:16:22 +0000</pubDate>
		<guid isPermaLink="false">http://codebrane.com/blog/?p=1897#comment-94021</guid>
		<description><![CDATA[Hi Alistair it&#039;s me again.
I&#039;ve got two more questions coresponding guanxi. In the end of comunication IdP send SAML Response and a SAML Assertion in it. In this implementation the Response is digitaly signed while Assertion isn&#039;t. Have you foreseen a posibility of signing both Response and Assertion in it or even move signature from Response into the Assertion by only changing configuration files?

And a second one, is there a posibility to encrypt the SAML Assertion inside SAML Response? Have you foreseen such an option?]]></description>
		<content:encoded><![CDATA[<p>Hi Alistair it&#8217;s me again.<br />
I&#8217;ve got two more questions coresponding guanxi. In the end of comunication IdP send SAML Response and a SAML Assertion in it. In this implementation the Response is digitaly signed while Assertion isn&#8217;t. Have you foreseen a posibility of signing both Response and Assertion in it or even move signature from Response into the Assertion by only changing configuration files?</p>
<p>And a second one, is there a posibility to encrypt the SAML Assertion inside SAML Response? Have you foreseen such an option?</p>
]]></content:encoded>
	</item>
</channel>
</rss>
