|
- primary SAML2 relayState parameter should be used for statefull connections but no PEPS instance support this feature from SAML2 specification
- as bugfix the PEPS AuthnRequest ID attribute is used as sessiontokken because most PEPS instances return the requestID in PEPS AuthnResponse->inResponseTO attribute
|