Uploaded image for project: 'SonarQube'
  1. SonarQube
  2. SONAR-13328

SAML responses must be validated

    XMLWordPrintable

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: None
    • Fix Version/s: 7.9.4, 8.4
    • Component/s: None
    • Labels:
      None
    • Edition:
      Community
    • Production Notes:
      None

      Description

      SAML responses are not validated.

      SAML authentication adds additional checks for validating SAML responses from the identity provider.
      This could reveal a non-standard configuration that needs to be updated. Information will appear in the logs upon a failed login attempt in the event that the configuration needs to be tweaked.
      Validation requires a proper HTTPS configuration, as documented in Operating the Server.

        Attachments

          Activity

            People

            Assignee:
            michal.duda Michal Duda (Inactive)
            Reporter:
            christophe.levis Christophe Levis
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Dates

              Due:
              Created:
              Updated:
              Resolved: