Skip to Content.
Sympa Menu

technical-discuss - Re: [InC-Technical] InCommon Baseline Expectations Metadata Requirements

Subject: InCommon Technical Discussions

List archive

Re: [InC-Technical] InCommon Baseline Expectations Metadata Requirements


Chronological Thread 
  • From: Rhys Smith <>
  • To: Alan Buxey <>
  • Cc: Scott Cantor <>, "" <>
  • Subject: Re: [InC-Technical] InCommon Baseline Expectations Metadata Requirements
  • Date: Thu, 9 Nov 2017 12:02:49 +0000
  • Accept-language: en-GB, en-US
  • Authentication-results: spf=none (sender IP is ) ;
  • Ironport-phdr: 9a23:fibl4BVxdS4jUrSFwWmGvC3q4JbV8LGtZVwlr6E/grcLSJyIuqrYbRKEt8tkgFKBZ4jH8fUM07OQ6PGwHzRYqb+681k6OKRWUBEEjchE1ycBO+WiTXPBEfjxciYhF95DXlI2t1uyMExSBdqsLwaK+i764jEdAAjwOhRoLerpBIHSk9631+ev8JHPfglEnjSwbLdxIRmssQndqtQdjJd/JKo21hbHuGZDdf5MxWNvK1KTnhL86dm18ZV+7SleuO8v+tBZX6nicKs2UbJXDDI9M2Ao/8LrrgXMTRGO5nQHTGoblAdDDhXf4xH7WpfxtTb6tvZ41SKHM8D6Uaw4VDK/5KpwVhTmlDkIOCI48GHPi8x/kqRboA66pxdix4LYeZyZOOZicq/Ye94RWGhPUdtLVyFZAo2ycZYBD/YPM+hboYnypVwArRqiCgajH+7vxSNEhnrs0K06z+gsEwfL1xEgEdIUt3TUqc34OrsSUeG116nD0CjNb/ZX2Tfh6IjDbxcsr+2MXbNwasrd01QhFwbEjlWMqYzoJDGV1uUWs2eH9eZvT/6gh3Q6qwFyuzWiwNonhIrRho8N1FzI6Sd0zJw2KNGmUkJ2YsKoHIFNuyyZM4Z6Wt0uT310tConz7ALtpy2cDQPxZg6yR7Td/iKfo2L7x3/VeucJDl1iG5ndb2hghu/8FWvxvPnWcSx0ltHriRFncfJu30N0xHc8dSIRuNz/ki/2juDywXe5+RALE0wmqfUMZssz7wtmZcRvknOGy77lUr5gaCLc0gp+vak6+rpYrjgu5SSLZV7ihvkPaQrgsG/Afo3MgwJX2WD5+u8yaTv/Vb8QLVWlv06i7TWv47eJcQauK62HRVV04Y65xqiDDqr1M4UnXwGLFJAZh2Ik5LmO0rSIPziEfi/hFGsnC9qx/DAILLhHo3AImbfnLrjZ7pw6FBQxBAwwNxD/Z5YF7IMLfbrVk/0rtPYDxs5MwKuw+bgDdVwzpkeWWKPA6+CKq/SqlqI5uMzI+mMf4IVujf9K+M56PL0l3A2hUURfbSq3ZcPcnC3AuxmI1mFYXrrmtoBEGEKsRY5TOzvjV2CVjhTa2y1X6Im6TE3EZ6mApnfSYCthryB3Tu0EYdSZmxfF1+MEGzoeJmZW/cXcyKfOcthkj0fVbi9UI8tywuitA78y7p7MOXU4CsYuoz/1NRr/eHciww99SEnR/iahkiJRmc8tH4YSi5+iKl7qEo7wEqT3LlQhu1FE91f7uJSFAw9MMiP4fZ9DoXIWhPaNuyMSUqmCoGcASAqCOk0wsMOS0R8AN7khxuFwin8UOxdrKCCGJFhqvGU5HP2Pcsoji+ejKQ=
  • Spamdiagnosticmetadata: NSPM
  • Spamdiagnosticoutput: 1:99

Not yet. Have built the backend stuff that scans all the endpoints in MD
(does ssllabs testing, nmaps the cipher suites and tls versions supported,
guesses at the software by the naming of the path of the endpoints, etc)… but
haven’t yet built anything that displays it. At the moment, extracting data
is me running an SQL query.

Will be making something more frontend start of next year when i get time.

Having said that, not 100% sure about making the results of the SSLlabs
scanning publicly (and especially trivially)! available, purely for security
reasons. Don’t want it to be too easy to find the best targets…

Rhys.



> On 9 Nov 2017, at 11:55, Alan Buxey
> <>
> wrote:
>
>> Just so happens I’ve been doing this in bulk on all endpoint hosts in UKf
>> & edugain MD for about 6 months or so now (with Qualys approval).
>
> ..and I was about to say 'I'm sure someone was already doing this' . :)
>
> is the result/report public anywhere . (ideally with a trivial API
> query so we can trivially check entities and why users are unlikely to
> be completing SAML process) :)
>
> alan
>

Attachment: smime.p7s
Description: S/MIME cryptographic signature




Archive powered by MHonArc 2.6.19.

Top of Page