upgrade from 2.4.3 to 2.5.1

Russell Beall beall at usc.edu
Fri Mar 29 13:50:10 EDT 2013


Hi,

I am working on a plan for the sysadmins to upgrade the SP versions deployed here.  Usually the upgrade process is supposed to allow this to just happen without modifications I believe, and this almost worked but for a couple of issues:

The downloaded metadata file remained owned by root.
The /etc/shibboleth directory remained owned by root also, (and that is where the metadata files are configured to be written).

I believe this is partly (or fully) answered by the release notes for 2.5.0.  Looks like the metadata should be downloaded to /var/cache/shibboleth?

The socket listener file was set to /var/run/shibd.sock, but looks like it should have been set to /var/run/shibboleth/shibd.sock (or omitted and allowed to use the default).  This was just the convention used by longstanding use in our configuration generator.  This should probably just be left to the default, right?

I also saw a note that made it seem like the use of the shibboleth logo was not appropriate.  I always assumed that this would be fine to show on the info pages displayed by shib, and many of our sites will display that when there is an error or access issue.  Is this considered a copyright problem?

Thanks,
Russ.





More information about the users mailing list