Acquiring Certificate (idp.crt)
Thomas Jones
thomas.jones.g at gmail.com
Wed Jul 3 14:09:33 EDT 2013
Thanks Scott!
Will do.
Best,
On Jul 3, 2013, at 1:07 PM, "Cantor, Scott" <cantor.2 at osu.edu> wrote:
>> Quick question about idp.
>
> Please post further questions of this nature to users, the dev list is just for development issues.
>
>> - It's a good practice to buy a certificate from a CA for production right? I
>> mean in order to replace the idp.crt that shibboeth creates for you or the
>> self-sign is good enough? (as a separate topic, I already have the browser-
>> facing ssl certificate)
>
> No, it's bad practice. There is no reason you need to change this.
>
>> - I'm a little confuse about what type of certificate should I buy: Certificate
>> for signing code, apps, etc?
>
> That's why it's bad practice, there is nothing in existence that you can buy that would make any sense, and it would cause problems in any case if you did.
>
> -- Scott
>
>
> --
> To unsubscribe from this list send an email to dev-unsubscribe at shibboleth.net
More information about the dev
mailing list