Make X509AuthServlet extensible
Kaspar Brand
kaspar.brand at switch.ch
Thu May 7 04:02:32 EDT 2015
On 01.05.2015 17:31, Marvin Addison wrote:
> Closing the loop on this. Thank you very much for suggesting this strategy.
> The API is indeed easy to use and suited my needs well. I quickly developed
> a component that I used to implement custom cert validation, which allowed
> me to get X.509 auth working to fulfill our InCommon Assurance
> requirements. Here's a link in case anyone else might find the component
> useful or inspirational:
>
> https://gist.github.com/serac/e3c33ebf83a99f8423f3
Since this is about "a trust engine for enforcing certificate policies
are satisfied", I wondered if you are aware of
https://issues.shibboleth.net/jira/browse/JXT-98 (which also made its
way into OpenSAML 3, see OSJ-28)?
Kaspar
More information about the dev
mailing list