SAML 2.0 message replay protection

4 views
Skip to first unread message

Andy Ng

unread,
Nov 19, 2020, 2:10:21 AM11/19/20
to CAS Community
Hi all,

I am reading on the importance of preventing replay attack https://www.idm-360.com/idm360/the-dangers-of-saml-replay-attacks/, which is a requirement from our client.

I was wondering if CAS natively already prevent such attack for SAML 2.0 protocol acting both as sp or as idp. Using the CAS 6.2.x.

Would like to see if any one have any insights, if not we would go ahead and do some testing on this.

Thanks!

Cheers!
- Andy
Reply all
Reply to author
Forward
0 new messages