A note about Jetty <Property/> elements sourced from conf/idp.properties

Cantor, Scott cantor.2 at osu.edu
Thu May 8 11:58:30 EDT 2014


On 5/7/14, 9:40 PM, "Tom Zeller" <tzeller at dragonacea.biz> wrote:
>
>It looks like neither Tomcat nor Jetty can read property files at
>arbitrary paths.

I'm rather shocked at that (re: Jetty). What are they doing that restricts
this?

> The container will need the keystore password and
>path, and since the keystore path is relative to idp.home it is user
>configurable, which I was hoping to restrict/contain to idp.properties.

Well, this somewhat dovetails with the whole back channel question: maybe
the answer is we stop pushing people in that direction and not worry about
trying to automate that. But I'm not sure that flies long term anyway, if
OpenID Connect and CAS are in the picture.

-- Scott




More information about the dev mailing list