TrustStore Entry Alias
Cantor, Scott
cantor.2 at osu.edu
Tue Apr 22 09:50:41 EDT 2014
On 4/22/14, 9:38 AM, "Vasu Y" <vyal2k at yahoo.com> wrote:
>We have to send LogoutRequest from SP to IDP using back-channel SOAP
>binding. As part of this we need to setup TrustStore (JKS type) to store
>certificates of IDP's that the SP communicates with.
>When importing an IDP's signing certificate into the TrustStore, what
>should be the alias of that entry?
This isn't a Shibboleth question, and this is a mailing list for
Shibboleth usage questions.
>Can it be anything or does it have to be EntityID of the IDP or something
>for the back-channel communication to work successfully?
It's your code, so nobody else could possibly answer that question but you
or your co-authors if you have them. In short, it doesn't have to be
anything. It doesn't have to be a keystore at all, and everybody despises
keystores, so you probably should avoid them unless you have a specific
reason not to.
-- Scott
More information about the users
mailing list