Skip to Content.
Sympa Menu

shibboleth-dev - Re: Tomcat and certificate validation for SSL

Subject: Shibboleth Developers

List archive

Re: Tomcat and certificate validation for SSL


Chronological Thread 
  • From: Tom Scavo <>
  • To: Chad La Joie <>
  • Cc:
  • Subject: Re: Tomcat and certificate validation for SSL
  • Date: Tue, 14 Jun 2005 08:05:28 -0400
  • Domainkey-signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:reply-to:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=s8wQlpgdIJRJ0D5i7+yo76DWB2nGQeEacbihQV2KZHaMlT20gi48Y5+z9LIO6auYO3hIT1sKhdSIepUgHVqAKnVHHLwwSOUlHRz+9Dt3Fb12U8eeG//NtK3CbPFQj02EDDZSPqBBRmVl69evyoaJsXDUJxOV61CROTh4Jdg7Onk=

On 6/14/05, Chad La Joie
<>
wrote:
> Message-level security might be a better solution in the future, but for
> now it's out of the question as it would require a change in the Shib
> protocol and that would be bad at this stage of the game.

Well, WS-Fed is hot on our heals so the future is now.

> For now though, the goal is just to get a standalone Tomcat server to
> behave like an Apache/Tomcat set up.

But as you said, mucking with the container is non-portable. Could
you write a filter that sits in front of the IdP and does the same
thing to the request that apache is doing now (whatever that is)?

Tom



Archive powered by MHonArc 2.6.16.

Top of Page