providers/saml: fix invalid SAML Response when assertion and response are signed (cherry-pick #12611)#12613
Conversation
… are signed (#12611) * providers/saml: fix invalid SAML Response when assertion and response are signed Signed-off-by: Jens Langhammer <jens@goauthentik.io> * validate against schema too Signed-off-by: Jens Langhammer <jens@goauthentik.io> --------- Signed-off-by: Jens Langhammer <jens@goauthentik.io>
✅ Deploy Preview for authentik-docs ready!
To edit notification comments on pull requests, go to your Netlify site configuration. |
Codecov ReportAll modified and coverable lines are covered by tests ✅
✅ All tests successful. No failed tests found. Additional details and impacted files@@ Coverage Diff @@
## version-2024.12 #12613 +/- ##
===================================================
- Coverage 92.78% 92.72% -0.06%
===================================================
Files 770 770
Lines 38777 38789 +12
===================================================
- Hits 35980 35969 -11
- Misses 2797 2820 +23
Flags with carried forward coverage won't be shown. Click here to find out more. ☔ View full report in Codecov by Sentry. |
|
authentik PR Installation instructions Instructions for docker-composeAdd the following block to your AUTHENTIK_IMAGE=ghcr.io/goauthentik/dev-server
AUTHENTIK_TAG=gh-e1ec547aed3b88c759837d792d113133368db36a
AUTHENTIK_OUTPOSTS__CONTAINER_IMAGE_BASE=ghcr.io/goauthentik/dev-%(type)s:gh-%(build_hash)sFor arm64, use these values: AUTHENTIK_IMAGE=ghcr.io/goauthentik/dev-server
AUTHENTIK_TAG=gh-e1ec547aed3b88c759837d792d113133368db36a-arm64
AUTHENTIK_OUTPOSTS__CONTAINER_IMAGE_BASE=ghcr.io/goauthentik/dev-%(type)s:gh-%(build_hash)sAfterwards, run the upgrade commands from the latest release notes. Instructions for KubernetesAdd the following block to your authentik:
outposts:
container_image_base: ghcr.io/goauthentik/dev-%(type)s:gh-%(build_hash)s
global:
image:
repository: ghcr.io/goauthentik/dev-server
tag: gh-e1ec547aed3b88c759837d792d113133368db36aFor arm64, use these values: authentik:
outposts:
container_image_base: ghcr.io/goauthentik/dev-%(type)s:gh-%(build_hash)s
global:
image:
repository: ghcr.io/goauthentik/dev-server
tag: gh-e1ec547aed3b88c759837d792d113133368db36a-arm64Afterwards, run the upgrade commands from the latest release notes. |
Cherry-picked providers/saml: fix invalid SAML Response when assertion and response are signed (#12611)
Signed-off-by: Jens Langhammer jens@goauthentik.io
Signed-off-by: Jens Langhammer jens@goauthentik.io
Signed-off-by: Jens Langhammer jens@goauthentik.io