Two-way SAML encryption

Idea created by Steve Bagwell on Nov 17, 2017
    New Idea
    Score15
    • Mark A Adams
    • Jason Martin
    • Steve Bagwell

    When using SAML-based authentication, it's important to have encryption both directions; from the SP to the IDP and vice versa.  
    Please add this functionality and make it possible for Samanage instance admins to get the public SAML cert that will be used by Samanage as an SP for them to add to their IDP's remote SP metadata.  Such certs should have long life times.

    What problem will this feature solve?:
    Lack of security due to a lack of two-way encryption during the SAML authentication process.