diff --git a/mdx/_rules/check_uk_trust.xsl b/mdx/_rules/check_uk_trust.xsl index 49dc0f2b..378c3a30 100644 --- a/mdx/_rules/check_uk_trust.xsl +++ b/mdx/_rules/check_uk_trust.xsl @@ -23,7 +23,7 @@ + In roles which indicate support through their protocolSupportEnumeration values for + SAML 2.0 or SAML 1.1 profiles, each MUST support the direct key + verification scheme as described in section 2.1.1. + --> @@ -80,4 +80,28 @@ + + + SAML 1.1 IdP has KeyDescriptor without embedded key + + + + + + SAML 1.1 AttributeAuthority has KeyDescriptor without embedded key + + + + + + SAML 1.1 SP has KeyDescriptor without embedded key + + +