The ITfoxtec Identity Saml2 package adds SAML-P support for both Identity Provider (IdP) and Relying Party (RP).
- Support .NET 8.0
- Support .NET 7.0
- Support .NET 6.0
- Support .NET 5.0
- Support .NET Core 3.1
- Support .NET Standard 2.1
- Support .NET Framework 4.6.1 and 4.7.2
The ITfoxtec Identity Saml2 package implements the most important parts of the SAML-P standard and some optional features.
Message signing and validation as well as decryption is supported. The package supports SAML 2.0 login, logout, single
logout and metadata. Both SP Initiated and IdP Initiated sign on is supported.
The package supports redirect binding, post binding and artifact binding.
You can create a tenant on FoxIDs and translate from SAML 2.0 to OpenID Connect. FoxIDs handles the SAML 2.0 traffic to the Identity Provider (IdP) and your application connects to FoxIDs with OpenID Connect.
SAML 2.0 is an old standard with its shortcomings, and therefore it is often a better choice to use OpenID Connect in an application.
You can likewise use FoxIDs to translate from the Danish NemLog-in3 (MitID) and Context Handler to OpenID Connect.
The ITfoxtec Identity Saml2 package supports signing/encryption certificates in Azure Key Vault. Please see the TestWebAppCoreAzureKeyVault sample.
The ITfoxtec Identity Saml2 package is tested for compliance with AD FS, Azure AD, Azure AD B2C, the Danish NemLog-in3 (MitID), the Danish Context Handler and many other IdPs and RPs.
Please see the test samples. The TestWebAppCoreNemLogin3Sp sample show how to implement an NemLog-in3 Service Provider (SP).
You can use the SAML 2.0 tool to decode tokens and create self-signed certificates with the certificate tool.
You can read more on ITfoxtec Identity Saml2 Project Home Page.
If you have questions please ask them on Stack Overflow. Tag your questions with 'itfoxtec-identity-saml2' and I will answer as soon as possible.