Saml Xml Decrypter (samlEncryption-SamlXmlDecrypter)

This component supports SAML EncryptedAssertions. If an IdP requires encryption, you can add a SamlXmlDecrypter to the SAMLAuthenticationScheme, and configure it with the encryption certificate from the User Key Store.

This component is available in the samlEncryption palette.

After adding the SamlXmlDecrypter to the SAMLAuthenticationScheme, you configure the decrypter’s SAML Server Encryption Cert property with the appropriate encryption certificate. In some cases, you may be using the same certificate as the SAML server (signing) certificate.

Figure 25.   Saml Xml Decrypter property
Image

To access this property, expand Config > Services > Authentication Service > Authentication Schemes > SAMLAuthenticationScheme and double-click SAMLXmlDecrypter.

Property Value Description
SAML Server Encryption Cert drop-down list Selects the certificate required by the SAML Server for encryption.