Skip to Content.
Sympa Menu

metadata-support - Re: [Metadata-Support] SP configuration for new InCommon Aggregate

Subject: InCommon metadata support

List archive

Re: [Metadata-Support] SP configuration for new InCommon Aggregate


Chronological Thread 
  • From: "Kathy E. Wright" <>
  • To:
  • Subject: Re: [Metadata-Support] SP configuration for new InCommon Aggregate
  • Date: Thu, 27 Mar 2014 20:20:59 -0400

Our SPs are Red Hat Enterprise Linux Server release 5.8, x86_64 using SP v. 2.4.3 and v. 2.5.0
On each, we have verified the SHA1 and SHA256 fingerprints for both hosts using the docs: https://spaces.internet2.edu/x/moHFAg.

Thank you,
Kathy



On Thu, Mar 27, 2014 at 7:59 PM, Cantor, Scott <> wrote:
On 3/27/14, 7:46 PM, "Kathy E. Wright" <> wrote:
>
>However, will this config work satisfactorily without reference to the
>cert?
><MetadataFilter type="Signature" certificate="incommon/inc-md-cert.pem"/>

No, that's not secure.

>When we've included this reference, our shibd_warn.log has the following
>error.

Then you have the wrong certificate, or you have a system that is
incapable of handling SHA-256. What is the platform?

-- Scott






Archive powered by MHonArc 2.6.16.

Top of Page