Advertisement
timlegge

Untitled

Feb 4th, 2023
1,053
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
XML 8.31 KB | None | 0 0
  1. =====================================================================
  2. Before  XML::Sig Changes
  3. =====================================================================
  4.  
  5. <?xml version="1.0"?>
  6. <samlp:ArtifactResolve xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" xmlns:dsig="http://www.w3.org/2000/09/xmldsig#" ID="_cce4ee769ed970b501d680f697989d14" IssueInstant="2010-09-18T17:33:01Z" Version="2.0">
  7.   <!-- this is a comment - we can still sign and verify -->
  8.   <saml:Issuer>http://dev/cgi-bin/zxidhlo.pl?o=B</saml:Issuer>
  9.   <samlp:Artifact>AAQAALN+k3vq4G80Xko1XPLwwxsvPbU/JPFWdERp73EBAjuV4yT7ce9UMDQ=</samlp:Artifact>
  10. <dsig:Signature>
  11.             <dsig:SignedInfo xmlns:xenc="http://www.w3.org/2001/04/xmlenc#">
  12.                 <dsig:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
  13.                 <dsig:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
  14.                 <dsig:Reference URI="#_cce4ee769ed970b501d680f697989d14">
  15.                         <dsig:Transforms>
  16.                             <dsig:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
  17.                             <dsig:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
  18.                         </dsig:Transforms>
  19.                         <dsig:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
  20.                         <dsig:DigestValue>o4mhQtq+4TAjKsezgW2o5sNVcxejTNWtTzPfPg/7+70=</dsig:DigestValue>
  21.                     </dsig:Reference>
  22.             </dsig:SignedInfo>
  23.             <dsig:SignatureValue>bPu7iAdo+O8BhZvFogSMZp0SaylMRTnF6xhLW9T4Cp7AneNQE66sm7IwglsiGadoO5Xl7PT5llo3
  24. X3OxkosyQTnAj9T90dn+6WAziwJKQ8eU2mFrkPfNOC2YNBSyu4NV2LCr8BICsSsW+jBqUyz35A+a
  25. hugXOdWtGt4VzDn1aO+ELkoqGq1XJP9VQfTZA7CDlOK0BvxhcKbL5tfn1QK7BjGJULIpHUAjtmMo
  26. 6zYvdvMoXOx/vVug4pGG/PuQP0QzMdL3yGIApIrnNSynW+aSFzixsnVrtPfWro2qsyUZud8i2L+T
  27. IwU8bAXvtPWZI0rFj3qLghIqqGU+K06hAXp4og==
  28. </dsig:SignatureValue>
  29.             <dsig:KeyInfo><dsig:X509Data><dsig:X509Certificate>
  30. MIIFuDCCA6CgAwIBAgICEAMwDQYJKoZIhvcNAQELBQAwezELMAkGA1UEBhMCQ0Ex
  31. FjAUBgNVBAgMDU5ldyBCcnVuc3dpY2sxHTAbBgNVBAoMFENyeXB0LU9wZW5TU0wt
  32. VmVyaWZ5MTUwMwYDVQQDDCxDcnlwdC1PcGVuU1NMLVZlcmlmeSBTSEEtMjU2IElu
  33. dGVybWVkaWF0ZSBDQTAeFw0yMTA3MDMyMTAyMjRaFw0zMTA3MDEyMTAyMjRaMGcx
  34. CzAJBgNVBAYTAkNBMRYwFAYDVQQIDA1OZXcgQnJ1bnN3aWNrMRAwDgYDVQQHDAdN
  35. b25jdG9uMRAwDgYDVQQKDAdYTUwtU2lnMRwwGgYDVQQDDBN4bWwtc2lnLmV4YW1w
  36. bGUuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArkqxhCTOB2Xx
  37. FxCNWJt0bLWRQva6qOAPKiqlLfgJjG+YY2JaPtpO7WNV5oVqv9F21V/wgOkcQTZZ
  38. QQQl/L/eXlnFpJeSpF31dupLnzrBU29qWjedNCkj+y01sprJG+c++2d2jV8Qccp5
  39. 5SklALtXYZ3K5OfILy4dFEqUyW0/Bk7Y/PdrAacAazumdNW2nw/ajbiXbUfm55Qe
  40. bQd/61emGettQBT9EUPOxMQrrtxHHxwyvrtsa9KyRPCamYEamOA0Al2Eya5dPWzE
  41. bndbVpRx1jz8Ec6ANk8wJHTkggJOUXWem7HL4x8v9hEQeaHEy5CwxKzodDpV2bA/
  42. Adr+NCYhsQIDAQABo4IBWDCCAVQwCQYDVR0TBAIwADARBglghkgBhvhCAQEEBAMC
  43. BkAwMwYJYIZIAYb4QgENBCYWJE9wZW5TU0wgR2VuZXJhdGVkIFNlcnZlciBDZXJ0
  44. aWZpY2F0ZTAdBgNVHQ4EFgQUDYY0sUvDD+ttN7MKzQzVgg25D94wgboGA1UdIwSB
  45. sjCBr4AUzVMiKnV2P0l/W5nowtx2oIRM0S2hgZKkgY8wgYwxCzAJBgNVBAYTAkNB
  46. MRYwFAYDVQQIDA1OZXcgQnJ1bnN3aWNrMRAwDgYDVQQHDAdNb25jdG9uMR0wGwYD
  47. VQQKDBRDcnlwdC1PcGVuU1NMLVZlcmlmeTE0MDIGA1UEAwwrQ3J5cHQtT3BlblNT
  48. TC1WZXJpZnkgU0hBLTI1NiBSb290IEF1dGhvcml0eYICEAAwDgYDVR0PAQH/BAQD
  49. AgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMBMA0GCSqGSIb3DQEBCwUAA4ICAQAlDY7m
  50. 1wwRB/X8NSeQ/Hvxg9dG4OofLFaC4e7dlC5kOT/ZIHQ6NIdzkQ2yOY1piKKYEYuO
  51. G/adtWAt8zRoejFob8W5aCA36uNoQLvdaMwXYNsJkzDNEmCB6vf3A28bVI+mlnt1
  52. +h3f0bkwxwHP2qYL8RneCL65GG+SWXHIipS/ZA5225mmT1oLo9xKeGK6vBgsOUum
  53. vxDgzmYyeGZYKpACWbOI7lR3C6PMR0oLKManLdb+ymngIk0bKB+Y2gr5cq/zURv8
  54. casiikjZT3MycPRV1AfQ3MYuXg6z4izkcG1U98E9Hr5p1gFsITmaY0aeK01a6xhx
  55. XkWKFTbraDn5ouTVMutW8xaVPU60zpYOcynxtRdgnYdmRR+c9dcD2xQmjtohuLxq
  56. RASCBC9iO7qTYkQvNW+yb63xbPDG05nokAfXpbp5hYVU8FYZHi8qOPtiaWiN9wbt
  57. ijsxDKZEcfiSGH5AEnkoaRCEqvbSNdtlbfYeDEnonsOZi9c+Kdl6A4PvOzTexwmi
  58. KPVgT8evWpQbubENw66vUOTqgkI+Bhbn87e1VELNUy+Uwz2OOcLEVvNkx0owswrH
  59. ujwb1+y1SYnlalLUt7PzEW85RNqVewGsHE8SD/1s70eYNYp7YJwLGPKJfyr3LvSl
  60. 0qRfrYNhlewPc1MSVx7IFCZ4Qg+GFhg8TnEELQ==
  61. </dsig:X509Certificate></dsig:X509Data></dsig:KeyInfo>
  62.         </dsig:Signature></samlp:ArtifactResolve>
  63.  
  64. =====================================================================
  65. AFTER  XML::Sig Changes
  66. =====================================================================
  67. <?xml version="1.0"?>
  68. <samlp:ArtifactResolve xmlns:samlp="urn:oasis:names:tc:SAML:2.0:protocol" xmlns:saml="urn:oasis:names:tc:SAML:2.0:assertion" ID="_cce4ee769ed970b501d680f697989d14" IssueInstant="2010-09-18T17:33:01Z" Version="2.0">
  69.   <!-- this is a comment - we can still sign and verify -->
  70.   <saml:Issuer>http://dev/cgi-bin/zxidhlo.pl?o=B</saml:Issuer>
  71.   <samlp:Artifact>AAQAALN+k3vq4G80Xko1XPLwwxsvPbU/JPFWdERp73EBAjuV4yT7ce9UMDQ=</samlp:Artifact>
  72. <dsig:Signature xmlns:dsig="http://www.w3.org/2000/09/xmldsig#">
  73.             <dsig:SignedInfo xmlns:dsig="http://www.w3.org/2000/09/xmldsig#" xmlns:xenc="http://www.w3.org/2001/04/xmlenc#">
  74.                 <dsig:CanonicalizationMethod Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
  75.                 <dsig:SignatureMethod Algorithm="http://www.w3.org/2001/04/xmldsig-more#rsa-sha256"/>
  76.                 <dsig:Reference URI="#_cce4ee769ed970b501d680f697989d14">
  77.                         <dsig:Transforms>
  78.                             <dsig:Transform Algorithm="http://www.w3.org/2000/09/xmldsig#enveloped-signature"/>
  79.                             <dsig:Transform Algorithm="http://www.w3.org/2001/10/xml-exc-c14n#"/>
  80.                         </dsig:Transforms>
  81.                         <dsig:DigestMethod Algorithm="http://www.w3.org/2001/04/xmlenc#sha256"/>
  82.                         <dsig:DigestValue>o4mhQtq+4TAjKsezgW2o5sNVcxejTNWtTzPfPg/7+70=</dsig:DigestValue>
  83.                     </dsig:Reference>
  84.             </dsig:SignedInfo>
  85.             <dsig:SignatureValue>bPu7iAdo+O8BhZvFogSMZp0SaylMRTnF6xhLW9T4Cp7AneNQE66sm7IwglsiGadoO5Xl7PT5llo3
  86. X3OxkosyQTnAj9T90dn+6WAziwJKQ8eU2mFrkPfNOC2YNBSyu4NV2LCr8BICsSsW+jBqUyz35A+a
  87. hugXOdWtGt4VzDn1aO+ELkoqGq1XJP9VQfTZA7CDlOK0BvxhcKbL5tfn1QK7BjGJULIpHUAjtmMo
  88. 6zYvdvMoXOx/vVug4pGG/PuQP0QzMdL3yGIApIrnNSynW+aSFzixsnVrtPfWro2qsyUZud8i2L+T
  89. IwU8bAXvtPWZI0rFj3qLghIqqGU+K06hAXp4og==
  90. </dsig:SignatureValue>
  91.             <dsig:KeyInfo><dsig:X509Data><dsig:X509Certificate>
  92. MIIFuDCCA6CgAwIBAgICEAMwDQYJKoZIhvcNAQELBQAwezELMAkGA1UEBhMCQ0Ex
  93. FjAUBgNVBAgMDU5ldyBCcnVuc3dpY2sxHTAbBgNVBAoMFENyeXB0LU9wZW5TU0wt
  94. VmVyaWZ5MTUwMwYDVQQDDCxDcnlwdC1PcGVuU1NMLVZlcmlmeSBTSEEtMjU2IElu
  95. dGVybWVkaWF0ZSBDQTAeFw0yMTA3MDMyMTAyMjRaFw0zMTA3MDEyMTAyMjRaMGcx
  96. CzAJBgNVBAYTAkNBMRYwFAYDVQQIDA1OZXcgQnJ1bnN3aWNrMRAwDgYDVQQHDAdN
  97. b25jdG9uMRAwDgYDVQQKDAdYTUwtU2lnMRwwGgYDVQQDDBN4bWwtc2lnLmV4YW1w
  98. bGUuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEArkqxhCTOB2Xx
  99. FxCNWJt0bLWRQva6qOAPKiqlLfgJjG+YY2JaPtpO7WNV5oVqv9F21V/wgOkcQTZZ
  100. QQQl/L/eXlnFpJeSpF31dupLnzrBU29qWjedNCkj+y01sprJG+c++2d2jV8Qccp5
  101. 5SklALtXYZ3K5OfILy4dFEqUyW0/Bk7Y/PdrAacAazumdNW2nw/ajbiXbUfm55Qe
  102. bQd/61emGettQBT9EUPOxMQrrtxHHxwyvrtsa9KyRPCamYEamOA0Al2Eya5dPWzE
  103. bndbVpRx1jz8Ec6ANk8wJHTkggJOUXWem7HL4x8v9hEQeaHEy5CwxKzodDpV2bA/
  104. Adr+NCYhsQIDAQABo4IBWDCCAVQwCQYDVR0TBAIwADARBglghkgBhvhCAQEEBAMC
  105. BkAwMwYJYIZIAYb4QgENBCYWJE9wZW5TU0wgR2VuZXJhdGVkIFNlcnZlciBDZXJ0
  106. aWZpY2F0ZTAdBgNVHQ4EFgQUDYY0sUvDD+ttN7MKzQzVgg25D94wgboGA1UdIwSB
  107. sjCBr4AUzVMiKnV2P0l/W5nowtx2oIRM0S2hgZKkgY8wgYwxCzAJBgNVBAYTAkNB
  108. MRYwFAYDVQQIDA1OZXcgQnJ1bnN3aWNrMRAwDgYDVQQHDAdNb25jdG9uMR0wGwYD
  109. VQQKDBRDcnlwdC1PcGVuU1NMLVZlcmlmeTE0MDIGA1UEAwwrQ3J5cHQtT3BlblNT
  110. TC1WZXJpZnkgU0hBLTI1NiBSb290IEF1dGhvcml0eYICEAAwDgYDVR0PAQH/BAQD
  111. AgWgMBMGA1UdJQQMMAoGCCsGAQUFBwMBMA0GCSqGSIb3DQEBCwUAA4ICAQAlDY7m
  112. 1wwRB/X8NSeQ/Hvxg9dG4OofLFaC4e7dlC5kOT/ZIHQ6NIdzkQ2yOY1piKKYEYuO
  113. G/adtWAt8zRoejFob8W5aCA36uNoQLvdaMwXYNsJkzDNEmCB6vf3A28bVI+mlnt1
  114. +h3f0bkwxwHP2qYL8RneCL65GG+SWXHIipS/ZA5225mmT1oLo9xKeGK6vBgsOUum
  115. vxDgzmYyeGZYKpACWbOI7lR3C6PMR0oLKManLdb+ymngIk0bKB+Y2gr5cq/zURv8
  116. casiikjZT3MycPRV1AfQ3MYuXg6z4izkcG1U98E9Hr5p1gFsITmaY0aeK01a6xhx
  117. XkWKFTbraDn5ouTVMutW8xaVPU60zpYOcynxtRdgnYdmRR+c9dcD2xQmjtohuLxq
  118. RASCBC9iO7qTYkQvNW+yb63xbPDG05nokAfXpbp5hYVU8FYZHi8qOPtiaWiN9wbt
  119. ijsxDKZEcfiSGH5AEnkoaRCEqvbSNdtlbfYeDEnonsOZi9c+Kdl6A4PvOzTexwmi
  120. KPVgT8evWpQbubENw66vUOTqgkI+Bhbn87e1VELNUy+Uwz2OOcLEVvNkx0owswrH
  121. ujwb1+y1SYnlalLUt7PzEW85RNqVewGsHE8SD/1s70eYNYp7YJwLGPKJfyr3LvSl
  122. 0qRfrYNhlewPc1MSVx7IFCZ4Qg+GFhg8TnEELQ==
  123. </dsig:X509Certificate></dsig:X509Data></dsig:KeyInfo>
  124.         </dsig:Signature></samlp:ArtifactResolve>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement