Shibboleth 2.5.1 blacklist of RSA 1.5

praveen praveen.pinto at peopleadmin.com
Tue Jan 29 11:31:36 EST 2013


I also dug further into the code, and see this..

         <element name="AlgorithmBlacklist">
            <complexType>
              <simpleContent>
                <extension base="conf:listOfURIs">
                  <attribute name="includeDefaultBlacklist" type="boolean"/>
                </extension>
              </simpleContent>
            </complexType>
          </element>

in the local/share/xml/shibboleth/shibboleth-2.0-native-sp-config.xsd

So if includeDefaultBlacklist is supposed to pick the "false" from my
security-policy.xml, but it doesn't, where is this
shibboleth-2.0-native-sp-config.xsd called from?  Why is it not using the
"false" attribute passed back to it?  I have verified that the
/var/run/shibboleth/security-policy.xml also has "false" for
includeDefaultBlacklist

Thanks

Thanks



--
View this message in context: http://shibboleth.1660669.n2.nabble.com/Shibboleth-2-5-1-blacklist-of-RSA-1-5-tp7584187p7584332.html
Sent from the Shibboleth - Users mailing list archive at Nabble.com.


More information about the users mailing list