Comments (3)
from java-saml.
Can you provide a HAR file from when you are seeing the issue?
from java-saml.
I see something similar when upgrading to jdk21 (from 14). It also has the error
org.xml.sax.SAXParseException: src-resolve: Cannot resolve the name 'xop:Include' to a(n) 'element declaration' component.
at c.s.o.a.x.i.u.ErrorHandlerWrapper.createSAXParseException(ErrorHandlerWrapper.java:204)
at c.s.o.a.x.i.u.ErrorHandlerWrapper.error(ErrorHandlerWrapper.java:135)
... 11 frames excluded
at javax.xml.validation.SchemaFactory.newSchema(SchemaFactory.java:612)
at javax.xml.validation.SchemaFactory.newSchema(SchemaFactory.java:644)
at c.onelogin.saml2.util.SchemaFactory.loadFromUrl(SchemaFactory.java:106)
at com.onelogin.saml2.util.Util.validateXML(Util.java:305)
at c.onelogin.saml2.authn.SamlResponse.isValid(SamlResponse.java:220)
at com.onelogin.saml2.Auth.processResponse(Auth.java:1202)
at com.onelogin.saml2.Auth.processResponse(Auth.java:1248)
at c.l.s.e.t.u.auth.OAuthTokenAction.processSamlResponse(OAuthTokenAction.java:241)
at c.l.s.e.t.u.auth.OAuthTokenAction.samlSignOn(OAuthTokenAction.java:141)
at j.i.r.DirectMethodHandleAccessor.invoke(DirectMethodHandleAccessor.java:103)
at java.lang.reflect.Method.invoke(Method.java:580)
at o.j.r.core.MethodInjectorImpl.invoke(MethodInjectorImpl.java:170)
at o.j.r.core.MethodInjectorImpl.invoke(MethodInjectorImpl.java:130)
at o.j.r.core.ResourceMethodInvoker.internalInvokeOnTarget(ResourceMethodInvoker.java:660)
at o.j.r.core.ResourceMethodInvoker.invokeOnTargetAfterFilter(ResourceMethodInvoker.java:524)
at o.j.r.core.ResourceMethodInvoker.lambda$invokeOnTarget$2(ResourceMethodInvoker.java:474)
at o.j.r.c.i.j.PreMatchContainerRequestContext.filter(PreMatchContainerRequestContext.java:364)
at o.j.r.core.ResourceMethodInvoker.invokeOnTarget(ResourceMethodInvoker.java:476)
... 70 frames truncated
from java-saml.
Related Issues (20)
- add AssertionConsumerServiceIndex to Saml2Settings.java HOT 5
- https://security.snyk.io/vuln/SNYK-JAVA-COMFASTERXMLWOODSTOX-2928754 vulnerability HOT 3
- This project is currently not under active development HOT 20
- Access Denied! You do not have access to this application. Please contact your administrator. HOT 1
- Signing both Message and Assertion throws Invalid Signature Error HOT 3
- CVE-2022-40152 affecting com.fasterxml.woodstox:woodstox-core HOT 3
- Unsigned saml assertions are not rejected HOT 1
- Signature validation failed. SAML Response rejected HOT 1
- Jakarta supported version HOT 3
- Testcases seems to be failing HOT 2
- Signing both Message and Assertion throws Invalid Signature Error HOT 1
- SAML Response - EncryptionMethod with Algorithm="http://www.w3.org/2009/xmlenc11#rsa-oaep" fails validation HOT 1
- Is onelogin saml toolkit supports the saml assertion decryption using the symmetric encryption method as well
- Preferred Alternative or Fork?
- Insecure/obsolete default signature algorithm HOT 1
- Please Help - clarification for using the SAML toolkit with existing Java Web Apps
- Links are broken for "How it Works" section
- Issues Javax EE to Jakarta EE using java-saml HOT 10
- SamlResponse.decryptAssertion, logical error
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from java-saml.