From 4b8726e0e3d6d3c93cf444cb917bc193e56e6600 Mon Sep 17 00:00:00 2001 From: kaiyou <pierre@jaury.eu> Date: Wed, 13 Nov 2019 19:51:57 +0100 Subject: [PATCH] Do not check the request issuer atm --- hiboo/sso/saml.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/hiboo/sso/saml.py b/hiboo/sso/saml.py index 70d675c1..d4e8d2b5 100644 --- a/hiboo/sso/saml.py +++ b/hiboo/sso/saml.py @@ -167,7 +167,7 @@ def saml_redirect(service_uuid): idp = server.Server(config=(MetaData.get_config(service))) xml = flask.request.args["SAMLRequest"] request = idp.parse_authn_request(xml, saml2.BINDING_HTTP_REDIRECT) - request.message.issuer or flask.abort(403) + #request.message.issuer or flask.abort(403) service.config["acs"] == request.message.issuer.text or flask.abort(403) # Provide a SAML response response = idp.create_authn_response( -- GitLab