diff --git a/mdx/_rules/check_saml2.xsl b/mdx/_rules/check_saml2.xsl index 8ab0d9f..b97520b 100644 --- a/mdx/_rules/check_saml2.xsl +++ b/mdx/_rules/check_saml2.xsl @@ -60,8 +60,7 @@ --> + [not((md:KeyDescriptor[descendant::ds:X509Data and @use='encryption']) or ((md:KeyDescriptor[descendant::ds:X509Data and not(@use)])))]"> SAML 2.0 SP has no encryption key