No mechanism that I've seen used requires you to go back to the IdP in
order to validate a token. In fact, I'm pretty sure they were designed
specifically to not require this.
Krentz, Konrad-Felix wrote:
> Hi,
>
> we are working on a Web Service gateway. It will have a support for SAML-tokens. So the SOAP-Request comes with a SAML-token, in order to authenticate users.
>
> Is it possible to validate SAML-tokens without connecting the identity provider?
>
> -thanks
>
> Konrad
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail:
> For additional commands, e-mail:
>
--
SWITCH
Serving Swiss Universities
--------------------------
Chad La Joie, Software Engineer, Net Services
Werdstrasse 2, P.O. Box, 8021 Zürich, Switzerland
phone +41 44 268 15 75, fax +41 44 268 15 68
, http://www.switch.ch