Skip to Content.
Sympa Menu

shibboleth-dev - RE: Tomcat and certificate validation for SSL

Subject: Shibboleth Developers

List archive

RE: Tomcat and certificate validation for SSL


Chronological Thread 
  • From: "Scott Cantor" <>
  • To: "'Tom Scavo'" <>, "'Chad La Joie'" <>
  • Cc: <>
  • Subject: RE: Tomcat and certificate validation for SSL
  • Date: Tue, 14 Jun 2005 17:02:20 -0400
  • Organization: The Ohio State University

> Does the apache-tomcat connector populate this attribute?

Yes. We used to assume the certificate was valid, leaving it up to mod_ssl.
Now we don't.

It strikes me that (and I think Chad's proposal is fine) after all that
work, it's arguably simpler to just use Apache. Actually, I will argue it,
and don't imagine I'd have any reason to stop.

It may be that tomcat is more viable if you're using validation and a small
enough anchor list to just load them.

-- Scott




Archive powered by MHonArc 2.6.16.

Top of Page