Acquiring Certificate (idp.crt)

Thomas Jones thomas.jones.g at gmail.com
Wed Jul 3 14:09:33 EDT 2013


Thanks Scott!

Will do.

Best, 

On Jul 3, 2013, at 1:07 PM, "Cantor, Scott" <cantor.2 at osu.edu> wrote:

>> Quick question about idp.
> 
> Please post further questions of this nature to users, the dev list is just for development issues.
> 
>> - It's a good practice to buy a certificate from a CA for production right? I
>> mean in order to replace the idp.crt that shibboeth creates for you or the
>> self-sign is good enough? (as a separate topic, I already have the browser-
>> facing ssl certificate)
> 
> No, it's bad practice. There is no reason you need to change this.
> 
>> - I'm a little confuse about what type of certificate should I buy: Certificate
>> for signing code, apps, etc?
> 
> That's why it's bad practice, there is nothing in existence that you can buy that would make any sense, and it would cause problems in any case if you did.
> 
> -- Scott
> 
> 
> --
> To unsubscribe from this list send an email to dev-unsubscribe at shibboleth.net



More information about the dev mailing list