| 8 Mar 2024 |
hexa | lol | 16:50:13 |
hexa | at least they're using their enterprise customers as guinea pigs ig | 16:50:36 |
adamcstephens | So maybe they will accept them? Though if they have the patches privately it feels wrong that others may have to recreate the functionality. (Seems not to be this case) | 17:08:21 |
hexa | anyway, who cares about SAML? Nobody. | 17:11:08 |
raitobezarius | i want to roast you but i will prevent myself | 17:11:28 |
raitobezarius | yes not everyone does not do authentication over an authorization RFC | 17:11:38 |
hexa | universities do | 17:11:41 |
raitobezarius | i much prefer saml to oauth2 | 17:12:01 |
raitobezarius | * i much prefer saml to oauth2/oidc | 17:12:06 |
hexa | lol what | 17:12:14 |
hexa | https://joonas.fi/2021/08/saml-is-insecure-by-design/ | 17:12:24 |
hexa | https://github.com/dexidp/dex/security/advisories/GHSA-m9hp-7r99-94h5 | 17:13:08 |