[JIRA] (OSJ-360) Regenerate PKIX test certs with SHA-2
Brent Putman (Jira)
jira at shibboleth.atlassian.net
Thu Sep 8 21:50:40 UTC 2022
Brent Putman ( https://shibboleth.atlassian.net/secure/ViewProfile.jspa?accountId=557058%3A97de0981-adc3-4044-95ed-131622fad81e ) *commented* on OSJ-360 ( https://shibboleth.atlassian.net/browse/OSJ-360?atlOrigin=eyJpIjoiMDJmNWNmZDlkYmVmNGRiZjhmYzlmN2VhZTNlZDBkOWIiLCJwIjoiaiJ9 )
Re: Regenerate PKIX test certs with SHA-2 ( https://shibboleth.atlassian.net/browse/OSJ-360?atlOrigin=eyJpIjoiMDJmNWNmZDlkYmVmNGRiZjhmYzlmN2VhZTNlZDBkOWIiLCJwIjoiaiJ9 )
Ok, yes, I see now that I was looking at the checkin for https://shibboleth.atlassian.net/browse/IDP-311 ( https://shibboleth.atlassian.net/browse/IDP-311 ) , but that was just getting rid of the test/resources/data paths in favor of standardization without the //data .
I don’t personally remember doing anything with those, esp if they were about policy OIDs. Maybe it was from v2 and was something Chad or someone else did ages ago. I guess I can always do some more git-fu to look back at the old paths and get more info, if necessary.
In any case, if it’s just policy OIDs then I should be able to fold those into generate.py. It might involve using a different openssl.cnf and/or a different extensions section arg to the CLI command. That part is easy. I imagine the main work will be just figuring exactly how those mdt*.pem certs differ from the standard/default stuff.
( https://shibboleth.atlassian.net/browse/OSJ-360#add-comment?atlOrigin=eyJpIjoiMDJmNWNmZDlkYmVmNGRiZjhmYzlmN2VhZTNlZDBkOWIiLCJwIjoiaiJ9 ) Add Comment ( https://shibboleth.atlassian.net/browse/OSJ-360#add-comment?atlOrigin=eyJpIjoiMDJmNWNmZDlkYmVmNGRiZjhmYzlmN2VhZTNlZDBkOWIiLCJwIjoiaiJ9 )
Get Jira notifications on your phone! Download the Jira Cloud app for Android ( https://play.google.com/store/apps/details?id=com.atlassian.android.jira.core&referrer=utm_source%3DNotificationLink%26utm_medium%3DEmail ) or iOS ( https://itunes.apple.com/app/apple-store/id1006972087?pt=696495&ct=EmailNotificationLink&mt=8 ) This message was sent by Atlassian Jira (v1001.0.0-SNAPSHOT#100206- sha1:66dd41f )
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://shibboleth.net/pipermail/commits/attachments/20220908/812f20ff/attachment-0001.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: jira-generated-image-static-comment-icon-4f96cd62-eb42-4eb1-b92e-36f483722e78
Type: image/png
Size: 1084 bytes
Desc: not available
URL: <http://shibboleth.net/pipermail/commits/attachments/20220908/812f20ff/attachment-0003.png>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: jira-generated-image-avatar-58e99acb-0972-49da-b3e5-57119685c595
Type: image/png
Size: 425 bytes
Desc: not available
URL: <http://shibboleth.net/pipermail/commits/attachments/20220908/812f20ff/attachment-0004.png>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: jira-generated-image-static-footer-desktop-logo-ab3d4e4c-8f6d-451b-a86b-bc5828ff2555
Type: image/png
Size: 10805 bytes
Desc: not available
URL: <http://shibboleth.net/pipermail/commits/attachments/20220908/812f20ff/attachment-0005.png>
More information about the commits
mailing list