Configuring use of SHA-256 in the IdP
Tom Scavo
trscavo at gmail.com
Wed Jul 10 10:58:36 EDT 2013
On Wed, Jul 10, 2013 at 10:33 AM, Cantor, Scott <cantor.2 at osu.edu> wrote:
>
> https://wiki.shibboleth.net/confluence/x/H4O3
>
> As the page notes, you may well break something if you just deploy this
> without testing some partners, and unfortunately it is limited by IdP
> design constraints to a global change.
Related to this, InCommon Operations is ramping up to begin testing
all SPs in the Federation for SHA-2 compatibility. We are looking for
volunteer(s) who would be willing to deploy one or two test IdPs and
make those IdPs available to Ops for testing. Both IdPs need to
support HTTP Basic Auth and IdP-initiated SSO. One of them would have
the bean installed and one wouldn't. In that way, we would be able to
identify which SPs can and can't handle SHA-2.
If you're interested, please contact me offline.
Thanks,
Tom
More information about the users
mailing list