Some problems about the certificate

Cantor, Scott cantor.2 at osu.edu
Wed Apr 25 13:39:05 BST 2012


On 4/25/12 1:22 AM, "杨如鹏" <orbbyrp at gmail.com> wrote:
>
>Thanks for the reply. I put the sp and idp in the same PC. And the sp was
>based on Apache while the idp was deployed on Tomcat. I generated a new
>keystore for tomcat's https port 8443, and the password is just "123456".
>I have specified the crt and key identical
> to the one in the metadata given to the sp just as below.

If you generated a new keystore for Tomcat, then that is a certificate
that has to be in the metadata (along with the IdP's). Or you need to stop
using a custom cert for TLS and use the IdP generated keypair for it.

Which is what both Peter and I said.

-- Scott



More information about the users mailing list