Saml Xml Decrypter (samlEncryption-SamlXmlDecrypter)

This component supports SAML EncryptedAssertions. If an IdP requires encryption, you can add a SamlXmlDecrypter to the SAMLAuthenticationScheme, and configure it with the encryption certificate from the User Key Store.

This component is available in the samlEncryption palette.

After adding the SamlXmlDecrypter to the SAMLAuthenticationScheme, you configure the decrypter’s SAML Server Encryption Cert property with the appropriate encryption certificate. In some cases, you may be using the same certificate as the SAML server (signing) certificate.

Figure 1. Saml Xml Decrypter property


To access this property, expand Config > Services > Authentication Service > Authentication Schemes > SAMLAuthenticationScheme and double-click SAMLXmlDecrypter.

PropertyValueDescription
SAML Server Encryption Certdrop-down listSelects the certificate required by the SAML Server for encryption.